prosím o odvirování pc

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
MrGyzmo95
nováček
Příspěvky: 19
Registrován: září 13
Pohlaví: Muž
Stav:
Offline

prosím o odvirování pc

Příspěvekod MrGyzmo95 » 25 zář 2013 17:11

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:10:09, on 25.9.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\netcut\services\AIPS.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
C:\Program Files\Microsoft\BingBar\SeaPort.EXE
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Common Files\Mediafour\iPod\M4iPodWPDService.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files\SoftwareUpdater\UpdaterService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.search.us.com/v/2/?guid={84164F36-6343-452D-B5D6-F95E88438163}&serpv=5
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTo0.dll
O2 - BHO: CrossriderApp0026766 - {11111111-1111-1111-1111-110211671166} - C:\Program Files\Discount Buddy\Discount Buddy.dll
O2 - BHO: Mediafour XPlay Explorer notifications - {4907C0AD-874D-44D9-B13E-7B0A4D8B9D3E} - C:\Program Files\Mediafour\XPlay 3\XPBHO.DLL
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: uTorrentControl_v2 - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTo0.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTo0.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\GAMING~1\MouseElf.EXE
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKCU\..\Run: [Facebook Update] "C:\Documents and Settings\Facová\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Arp Intelligent Protection Service (AIPS) - Arcai.com - C:\Program Files\netcut\services\AIPS.exe
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: M4iPodWPDService - Mediafour Corporation - C:\Program Files\Common Files\Mediafour\iPod\M4iPodWPDService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Software Updater (SrvUpdater) - Unknown owner - C:\Program Files\SoftwareUpdater\UpdaterService.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--
End of file - 10462 bytes

pomalý pc, seká se atd..

Reklama
Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod memphisto » 25 zář 2013 17:13

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
MrGyzmo95
nováček
Příspěvky: 19
Registrován: září 13
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod MrGyzmo95 » 25 zář 2013 17:37

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2013.09.25.04

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Facová :: HANA-136A80236B [administrátor]

25.9.2013 17:20:33
MBAM-log-2013-09-25 (17-36-26).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 198643
Uplynulý čas: 15 minut, 22 sekund

Nalezené procesy v paměti: 1
C:\Program Files\SoftwareUpdater\UpdaterService.exe (PUP.Optional.SoftwareUpdater.A) -> 1908 -> Nebyla provedena žádná instrukce.

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 15
HKLM\SYSTEM\CurrentControlSet\Services\SrvUpdater (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
HKCR\CrossriderApp0026766.BHO (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCR\CrossriderApp0026766.BHO.1 (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCR\CrossriderApp0026766.Sandbox (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCR\CrossriderApp0026766.Sandbox.1 (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCU\Software\Cr_Installer\26766 (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\CROSSRIDER (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\CROSSRIDER (Adware.GamePlayLab) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\SOFTWAREUPDATER (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Speedchecker Limited\PC Speed Up (PUP.Optional.PCSpeedUp.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110211671166} (PUP.Optional.CrossRider.M) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{11111111-1111-1111-1111-110211671166} (PUP.Optional.CrossRider.M) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{44444444-4444-4444-4444-440244674466} (PUP.Optional.CrossRider.M) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{55555555-5555-5555-5555-550255675566} (PUP.Optional.CrossRider.M) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211671166} (PUP.Optional.CrossRider.M) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 4
HKCU\Software\Crossrider|Verifier (PUP.Optional.CrossRider.A) -> Data: 75ad5bd0c077258b80b9e591f3b639a0 -> Nebyla provedena žádná instrukce.
HKCU\Software\Crossrider|215AppVerifier (Adware.GamePlayLab) -> Data: 2606519e2def6404a365bdd73caffd2d -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\SoftwareUpdater|partner_keyword (PUP.Optional.SoftwareUpdater.A) -> Data: FILEWIN -> Nebyla provedena žádná instrukce.
HKLM\SYSTEM\CurrentControlSet\Services\SrvUpdater|ImagePath (PUP.Optional.SoftwareUpdater.A) -> Data: C:\Program Files\SoftwareUpdater\UpdaterService.exe -> Nebyla provedena žádná instrukce.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 3
C:\Program Files\SoftwareUpdater (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.

Nalezené soubory: 37
C:\Program Files\SoftwareUpdater\UpdaterService.exe (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Local Settings\Temp\nsa44.tmp\winamp_full.exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Local Settings\Temp\nso7E.tmp-2\APN_ATU3_.exe (PUP.Optional.BundledToolBar.A) -> Nebyla provedena žádná instrukce.
C:\Program Files\SoftwareUpdater\KeyGen.dll (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
C:\Program Files\SoftwareUpdater\AppsUpda.con (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
C:\Program Files\SoftwareUpdater\AppsUpdater.exe (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
C:\Program Files\SoftwareUpdater\config.xml (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
C:\Program Files\SoftwareUpdater\Interop.Shell32.dll (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
C:\Program Files\SoftwareUpdater\translations.xml (PUP.Optional.SoftwareUpdater.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\1.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\a.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\b.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\c.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\d.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\e.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\f.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\g.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\h.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\i.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\j.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\k.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\l.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\m.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\n.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\o.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\p.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\q.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\r.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\s.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\t.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\u.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\v.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\w.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\x.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\y.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\z.txt (PUP.Optional.PriceGong.A) -> Nebyla provedena žádná instrukce.
C:\Program Files\Discount Buddy\Discount Buddy.dll (PUP.Optional.CrossRider.M) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
MrGyzmo95
nováček
Příspěvky: 19
Registrován: září 13
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod MrGyzmo95 » 25 zář 2013 17:45

# AdwCleaner v3.005 - Report created 25/09/2013 at 17:40:09
# Updated 22/09/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Facová - HANA-136A80236B
# Running from : C:\Documents and Settings\Facová\Plocha\adwcleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : APNMCP
Service Found : SrvUpdater

***** [ Files / Folders ] *****

File Found : C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
Folder Found C:\DOCUME~1\FACOV~1\LOCALS~1\Temp\apn
Folder Found C:\DOCUME~1\FACOV~1\LOCALS~1\Temp\apn
Folder Found C:\DOCUME~1\FACOV~1\LOCALS~1\Temp\apn
Folder Found C:\Documents and Settings\All Users\Data aplikací\apn
Folder Found C:\Documents and Settings\All Users\Data aplikací\Ask
Folder Found C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
Folder Found C:\Documents and Settings\Facová\Data aplikací\PriceGong
Folder Found C:\Documents and Settings\Facová\Local Settings\Data aplikací\apn
Folder Found C:\Documents and Settings\Facová\Local Settings\Data aplikací\AskToolbar
Folder Found C:\Documents and Settings\Facová\Local Settings\Data aplikací\Conduit
Folder Found C:\Documents and Settings\Facová\Local Settings\Data aplikací\cre
Folder Found C:\Documents and Settings\Facová\Local Settings\Data aplikací\PackageAware
Folder Found C:\Documents and Settings\Facová\Local Settings\Data aplikací\uTorrentControl_v2
Folder Found C:\Program Files\Ask.com
Folder Found C:\Program Files\AskPartnerNetwork
Folder Found C:\Program Files\Conduit
Folder Found C:\Program Files\Discount Buddy
Folder Found C:\Program Files\Discount Buddy
Folder Found C:\Program Files\SoftwareUpdater
Folder Found C:\Program Files\uTorrentControl_v2
Folder Found C:\Program Files\Vittalia

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\APN
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\Ask.com
Key Found : HKCU\Software\AskPartnerNetwork
Key Found : HKCU\Software\AskToolbar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Cr_Installer
Key Found : HKCU\Software\Crossrider
Key Found : HKCU\Software\Discount Buddy
Key Found : HKCU\Software\InstalledBrowserExtensions
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Found : HKCU\Software\SmartBar
Key Found : HKCU\Software\uTorrentControl_v2
Key Found : HKCU\Toolbar
Key Found : HKLM\Software\APN
Key Found : HKLM\Software\AskPartnerNetwork
Key Found : HKLM\Software\AskToolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Found : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110211671166}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220222672266}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{537F4F0B-3542-4C7D-A3E5-CF121482696C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0026766.BHO
Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0026766.BHO.1
Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0026766.Sandbox
Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0026766.Sandbox.1
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Found : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550255675566}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660266676666}
Key Found : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Found : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Found : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT3220468
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440244674466}
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\Discount Buddy
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211671166}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211671166}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C4AFB3F-0D4B-4FC2-92C8-6B4C56C0EA8A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3CF56BE-20FB-47C2-98E7-274D4AFBB593}
Key Found : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Discount Buddy
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SoftwareUpdater
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\uTorrentControl_v2 Toolbar
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110211671166}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{537F4F0B-3542-4C7D-A3E5-CF121482696C}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Discount Buddy
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentControl_v2 Toolbar
Key Found : HKLM\Software\PIP
Key Found : HKLM\Software\SoftwareUpdater
Key Found : HKLM\Software\uTorrentControl_v2
Product Found : Ask Toolbar
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v23.0.1 (cs)

[ File : C:\Documents and Settings\Facová\Data aplikací\Mozilla\Firefox\Profiles\uivd6re8.default-1378905198031\prefs.js ]


-\\ Google Chrome v29.0.1547.76

[ File : C:\Documents and Settings\Facová\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [9617 octets] - [25/09/2013 17:40:09]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [9677 octets] ##########

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod jaro3 » 25 zář 2013 20:03

. Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat-Clean
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
MrGyzmo95
nováček
Příspěvky: 19
Registrován: září 13
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod MrGyzmo95 » 26 zář 2013 15:56

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2013.09.25.04

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Facová :: HANA-136A80236B [administrátor]

26.9.2013 15:39:53
mbam-log-2013-09-26 (15-39-53).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 198606
Uplynulý čas: 12 minut, 39 sekund

Nalezené procesy v paměti: 1
C:\Program Files\SoftwareUpdater\UpdaterService.exe (PUP.Optional.SoftwareUpdater.A) -> 1924 -> Bude smazán při restartu.

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 15
HKLM\SYSTEM\CurrentControlSet\Services\SrvUpdater (PUP.Optional.SoftwareUpdater.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\CrossriderApp0026766.BHO (PUP.Optional.CrossRider.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\CrossriderApp0026766.BHO.1 (PUP.Optional.CrossRider.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\CrossriderApp0026766.Sandbox (PUP.Optional.CrossRider.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\CrossriderApp0026766.Sandbox.1 (PUP.Optional.CrossRider.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\Software\Cr_Installer\26766 (PUP.Optional.CrossRider.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\CROSSRIDER (PUP.Optional.CrossRider.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\CROSSRIDER (Adware.GamePlayLab) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\SOFTWAREUPDATER (PUP.Optional.SoftwareUpdater.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Speedchecker Limited\PC Speed Up (PUP.Optional.PCSpeedUp.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110211671166} (PUP.Optional.CrossRider.M) -> Přesun do karantény a smazání se zdařilo.
HKCR\CLSID\{11111111-1111-1111-1111-110211671166} (PUP.Optional.CrossRider.M) -> Přesun do karantény a smazání se zdařilo.
HKCR\TypeLib\{44444444-4444-4444-4444-440244674466} (PUP.Optional.CrossRider.M) -> Přesun do karantény a smazání se zdařilo.
HKCR\Interface\{55555555-5555-5555-5555-550255675566} (PUP.Optional.CrossRider.M) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211671166} (PUP.Optional.CrossRider.M) -> Přesun do karantény a smazání se zdařilo.

Nalezené hodnoty v registru: 4
HKCU\Software\Crossrider|Verifier (PUP.Optional.CrossRider.A) -> Data: 75ad5bd0c077258b80b9e591f3b639a0 -> Přesun do karantény a smazání se zdařilo.
HKCU\Software\Crossrider|215AppVerifier (Adware.GamePlayLab) -> Data: 2606519e2def6404a365bdd73caffd2d -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\SoftwareUpdater|partner_keyword (PUP.Optional.SoftwareUpdater.A) -> Data: FILEWIN -> Přesun do karantény a smazání se zdařilo.
HKLM\SYSTEM\CurrentControlSet\Services\SrvUpdater|ImagePath (PUP.Optional.SoftwareUpdater.A) -> Data: C:\Program Files\SoftwareUpdater\UpdaterService.exe -> Přesun do karantény a smazání se zdařilo.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 3
C:\Program Files\SoftwareUpdater (PUP.Optional.SoftwareUpdater.A) -> Bude smazán při restartu.
C:\Documents and Settings\Facová\Data aplikací\PriceGong (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.

Nalezené soubory: 37
C:\Program Files\SoftwareUpdater\UpdaterService.exe (PUP.Optional.SoftwareUpdater.A) -> Bude smazán při restartu.
C:\Documents and Settings\Facová\Local Settings\Temp\nsa44.tmp\winamp_full.exe (PUP.Optional.OpenCandy) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Local Settings\Temp\nso7E.tmp-2\APN_ATU3_.exe (PUP.Optional.BundledToolBar.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\SoftwareUpdater\KeyGen.dll (PUP.Optional.SoftwareUpdater.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\SoftwareUpdater\AppsUpda.con (PUP.Optional.SoftwareUpdater.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\SoftwareUpdater\AppsUpdater.exe (PUP.Optional.SoftwareUpdater.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\SoftwareUpdater\config.xml (PUP.Optional.SoftwareUpdater.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\SoftwareUpdater\Interop.Shell32.dll (PUP.Optional.SoftwareUpdater.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\SoftwareUpdater\translations.xml (PUP.Optional.SoftwareUpdater.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\1.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\a.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\b.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\c.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\d.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\e.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\f.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\g.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\h.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\i.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\j.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\k.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\l.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\m.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\n.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\o.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\p.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\q.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\r.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\s.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\t.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\u.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\v.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\w.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\x.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\y.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Documents and Settings\Facová\Data aplikací\PriceGong\Data\z.txt (PUP.Optional.PriceGong.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files\Discount Buddy\Discount Buddy.dll (PUP.Optional.CrossRider.M) -> Přesun do karantény a smazání se zdařilo.

(konec)

Uživatelský avatar
MrGyzmo95
nováček
Příspěvky: 19
Registrován: září 13
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod MrGyzmo95 » 26 zář 2013 16:07

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{537F4F0B-3542-4C7D-A3E5-CF121482696C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{537F4F0B-3542-4C7D-A3E5-CF121482696C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C4AFB3F-0D4B-4FC2-92C8-6B4C56C0EA8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3CF56BE-20FB-47C2-98E7-274D4AFBB593}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\Ask.com
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\AskToolbar
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Cr_Installer
Key Deleted : HKCU\Software\Discount Buddy
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\uTorrentControl_v2
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskPartnerNetwork
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\Discount Buddy
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\uTorrentControl_v2
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Discount Buddy
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentControl_v2 Toolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Discount Buddy
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SoftwareUpdater
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\uTorrentControl_v2 Toolbar
Product Deleted : Ask Toolbar

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v23.0.1 (cs)

[ File : C:\Documents and Settings\Facová\Data aplikací\Mozilla\Firefox\Profiles\uivd6re8.default-1378905198031\prefs.js ]


-\\ Google Chrome v29.0.1547.76

[ File : C:\Documents and Settings\Facová\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [9757 octets] - [25/09/2013 17:40:09]
AdwCleaner[R1].txt - [8643 octets] - [26/09/2013 15:57:52]
AdwCleaner[S0].txt - [7860 octets] - [26/09/2013 16:00:20]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7920 octets] ##########

Uživatelský avatar
MrGyzmo95
nováček
Příspěvky: 19
Registrován: září 13
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod MrGyzmo95 » 26 zář 2013 16:22

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.2 (09.22.2013:1)
OS: Microsoft Windows XP x86
Ran by Facov  on źt 26.09.2013 at 16:10:20,40
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\\Software\Microsoft\Internet Explorer\Main\\Start Page



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{22222222-2222-2222-2222-220222672266}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660266676666}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660266676666}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{021F5B57-3CC1-4BB6-921F-48A44755A548}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{F4A944AD-40E6-4275-9C54-DA56622E1761}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Documents and Settings\Facov \Data aplikacˇ\goforfiles"
Successfully deleted: [Folder] "C:\Program Files\goforfiles"



~~~ Chrome

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Google\Chrome\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źt 26.09.2013 at 16:19:25,71
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
MrGyzmo95
nováček
Příspěvky: 19
Registrován: září 13
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod MrGyzmo95 » 26 zář 2013 16:31

RogueKiller V8.6.12 [Sep 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Facová [Práva správce]
Mód : Kontrola -- Datum : 09/26/2013 16:29:52
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 1 ¤¤¤
[All Users][SUSP UNIC] Windows Search.lnk : C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Windows Search.lnk @C:\Program Files\Windows Desktop Search\WindowsSearch.exe /startup [-][-] -> NALEZENO

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Standardní diskové jednotky) - ST3160021A +++++
--- User ---
[MBR] 38232c531ad67d26caada53390976833
[BSP] 8cea6b9ed33907733d3cc892d60971fa : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 76308 Mo
1 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 156280320 | Size: 76308 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_09262013_162952.txt >>
RKreport[0]_S_09262013_162658.txt

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod jaro3 » 27 zář 2013 09:45

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.

Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "

- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
MrGyzmo95
nováček
Příspěvky: 19
Registrován: září 13
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod MrGyzmo95 » 29 zář 2013 10:14

RogueKiller V8.6.12 [Sep 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Facová [Práva správce]
Mód : Odebrat -- Datum : 09/29/2013 10:12:12
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 1 ¤¤¤
[All Users][SUSP UNIC] Windows Search.lnk : C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Windows Search.lnk @C:\Program Files\Windows Desktop Search\WindowsSearch.exe /startup [-][-] -> VYMAZÁNO

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Standardní diskové jednotky) - ST3160021A +++++
--- User ---
[MBR] 38232c531ad67d26caada53390976833
[BSP] 8cea6b9ed33907733d3cc892d60971fa : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 76308 Mo
1 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 156280320 | Size: 76308 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_09292013_101212.txt >>
RKreport[0]_S_09292013_101207.txt

Uživatelský avatar
MrGyzmo95
nováček
Příspěvky: 19
Registrován: září 13
Pohlaví: Muž
Stav:
Offline

Re: prosím o odvirování pc

Příspěvekod MrGyzmo95 » 29 zář 2013 10:28

10:16:50.0796 2944 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
10:16:51.0140 2944 ============================================================
10:16:51.0140 2944 Current date / time: 2013/09/29 10:16:51.0140
10:16:51.0140 2944 SystemInfo:
10:16:51.0140 2944
10:16:51.0140 2944 OS Version: 5.1.2600 ServicePack: 3.0
10:16:51.0140 2944 Product type: Workstation
10:16:51.0140 2944 ComputerName: HANA-136A80236B
10:16:51.0140 2944 UserName: Facová
10:16:51.0140 2944 Windows directory: C:\WINDOWS
10:16:51.0140 2944 System windows directory: C:\WINDOWS
10:16:51.0140 2944 Processor architecture: Intel x86
10:16:51.0140 2944 Number of processors: 1
10:16:51.0140 2944 Page size: 0x1000
10:16:51.0140 2944 Boot type: Normal boot
10:16:51.0140 2944 ============================================================
10:16:52.0281 2944 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
10:16:52.0468 2944 ============================================================
10:16:52.0468 2944 \Device\Harddisk0\DR0:
10:16:52.0468 2944 MBR partitions:
10:16:52.0468 2944 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x950A5C1
10:16:52.0484 2944 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x950A63F, BlocksNum 0x950A5C1
10:16:52.0484 2944 ============================================================
10:16:52.0609 2944 D: <-> \Device\Harddisk0\DR0\Partition2
10:16:52.0656 2944 C: <-> \Device\Harddisk0\DR0\Partition1
10:16:52.0656 2944 ============================================================
10:16:52.0656 2944 Initialize success
10:16:52.0656 2944 ============================================================
10:16:57.0296 2988 ============================================================
10:16:57.0296 2988 Scan started
10:16:57.0296 2988 Mode: Manual;
10:16:57.0296 2988 ============================================================
10:16:58.0890 2988 ================ Scan system memory ========================
10:16:58.0906 2988 System memory - ok
10:16:58.0921 2988 ================ Scan services =============================
10:16:59.0156 2988 Abiosdsk - ok
10:16:59.0187 2988 abp480n5 - ok
10:16:59.0328 2988 [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
10:16:59.0328 2988 ACDaemon - ok
10:16:59.0406 2988 [ 4FE34F1F3126B61FCC6B2043AA8112C9 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
10:16:59.0406 2988 ACPI - ok
10:16:59.0468 2988 [ AFDFF022A01F0B11C776F0860C3B282F ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
10:16:59.0484 2988 ACPIEC - ok
10:16:59.0609 2988 [ 24A0876D07EF356DCBC1D7A7929354AB ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
10:16:59.0609 2988 AdobeFlashPlayerUpdateSvc - ok
10:16:59.0656 2988 adpu160m - ok
10:16:59.0703 2988 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
10:16:59.0703 2988 aec - ok
10:16:59.0781 2988 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
10:16:59.0781 2988 AFD - ok
10:16:59.0812 2988 Aha154x - ok
10:16:59.0859 2988 aic78u2 - ok
10:16:59.0890 2988 aic78xx - ok
10:17:00.0031 2988 [ 2870CE9BFD6BA66FB0FFC6D11C9E41A7 ] AIPS C:\Program Files\netcut\services\AIPS.exe
10:17:00.0031 2988 AIPS - ok
10:17:00.0187 2988 [ D9026163ED32A13923A2C909897A6B87 ] ALCXWDM C:\WINDOWS\system32\drivers\ALCXWDM.SYS
10:17:00.0234 2988 ALCXWDM - ok
10:17:00.0312 2988 [ E0A6FA244B8624D78FE5FF6F56A33BAE ] Alerter C:\WINDOWS\system32\alrsvc.dll
10:17:00.0312 2988 Alerter - ok
10:17:00.0375 2988 [ 88842DE939A827577BF24243699AC80A ] ALG C:\WINDOWS\System32\alg.exe
10:17:00.0375 2988 ALG - ok
10:17:00.0406 2988 AliIde - ok
10:17:00.0453 2988 amsint - ok
10:17:00.0500 2988 AppMgmt - ok
10:17:00.0546 2988 asc - ok
10:17:00.0578 2988 asc3350p - ok
10:17:00.0625 2988 asc3550 - ok
10:17:00.0781 2988 [ F8C718DC4299002D495A9DA30A7C6EF1 ] ASFWHide C:\DOCUME~1\FACOV~1\LOCALS~1\Temp\ASFWHide
10:17:00.0812 2988 ASFWHide - ok
10:17:01.0000 2988 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
10:17:01.0000 2988 aspnet_state - ok
10:17:01.0062 2988 [ B9FE438B3CAD82B2014710349A2022F7 ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys
10:17:01.0062 2988 aswFsBlk - ok
10:17:01.0125 2988 [ 4691B3FE3717F9D9C64A5282C8543D4D ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
10:17:01.0125 2988 aswKbd - ok
10:17:01.0171 2988 [ AE5549DD21F6DE06406031EF1D51ACC3 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
10:17:01.0171 2988 aswMonFlt - ok
10:17:01.0218 2988 [ D084D0A7A66619FC29776CBBB9D5FA55 ] AswRdr C:\WINDOWS\system32\drivers\AswRdr.sys
10:17:01.0234 2988 AswRdr - ok
10:17:01.0265 2988 [ FA72FA503F580C3C628DD8C7D7622E37 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
10:17:01.0281 2988 aswRvrt - ok
10:17:01.0343 2988 [ 4D53349D848C6BADB3D4ACBE98C27676 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
10:17:01.0343 2988 aswSnx - ok
10:17:01.0406 2988 [ 813024DFD54A41B3AFAE2B1E2796CB80 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
10:17:01.0406 2988 aswSP - ok
10:17:01.0453 2988 [ 5E18413310134130D7772F0668698CB7 ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys
10:17:01.0453 2988 aswTdi - ok
10:17:01.0531 2988 [ A5F637D61719D37A5B4868C385E363C0 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
10:17:01.0531 2988 aswVmm - ok
10:17:01.0593 2988 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
10:17:01.0593 2988 AsyncMac - ok
10:17:01.0671 2988 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
10:17:01.0671 2988 atapi - ok
10:17:01.0703 2988 Atdisk - ok
10:17:01.0734 2988 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
10:17:01.0734 2988 Atmarpc - ok
10:17:01.0781 2988 [ DE31B88962A8645DBA5A37B993E7B0F1 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
10:17:01.0781 2988 AudioSrv - ok
10:17:01.0843 2988 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
10:17:01.0843 2988 audstub - ok
10:17:01.0953 2988 [ 9330941C8F6DF417F6DBBE998DB6687E ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
10:17:01.0953 2988 avast! Antivirus - ok
10:17:02.0078 2988 [ 01A24B415926BB5F772DBE12459D97DE ] BBSvc C:\Program Files\Microsoft\BingBar\BBSvc.EXE
10:17:02.0078 2988 BBSvc - ok
10:17:02.0156 2988 [ 785DE7ABDA13309D6065305542829E76 ] BBUpdate C:\Program Files\Microsoft\BingBar\SeaPort.EXE
10:17:02.0156 2988 BBUpdate - ok
10:17:02.0218 2988 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
10:17:02.0218 2988 Beep - ok
10:17:02.0328 2988 [ 19395D092FD85DDC2D9C7729CF5A2AC8 ] BITS C:\WINDOWS\system32\qmgr.dll
10:17:02.0343 2988 BITS - ok
10:17:02.0421 2988 [ 89E739BBA5F636297EA5B5F811189E06 ] Browser C:\WINDOWS\System32\browser.dll
10:17:02.0421 2988 Browser - ok
10:17:02.0500 2988 [ 92BB587B4A32102A6871F2C0F1F321C6 ] CbFs C:\WINDOWS\system32\drivers\cbfs.sys
10:17:02.0515 2988 CbFs - ok
10:17:02.0578 2988 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
10:17:02.0578 2988 cbidf2k - ok
10:17:02.0656 2988 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
10:17:02.0656 2988 CCDECODE - ok
10:17:02.0687 2988 cd20xrnt - ok
10:17:02.0765 2988 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
10:17:02.0765 2988 Cdaudio - ok
10:17:02.0843 2988 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
10:17:02.0843 2988 Cdfs - ok
10:17:02.0906 2988 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
10:17:02.0906 2988 Cdrom - ok
10:17:02.0953 2988 Changer - ok
10:17:03.0000 2988 [ E390DC1D7C461D7D56EC53402F329928 ] CiSvc C:\WINDOWS\system32\cisvc.exe
10:17:03.0000 2988 CiSvc - ok
10:17:03.0078 2988 [ 064507A8DFA8C5C7E2FFDDD3E6F424FA ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
10:17:03.0078 2988 ClipSrv - ok
10:17:03.0140 2988 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:17:03.0171 2988 clr_optimization_v2.0.50727_32 - ok
10:17:03.0234 2988 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
10:17:03.0234 2988 clr_optimization_v4.0.30319_32 - ok
10:17:03.0281 2988 CmdIde - ok
10:17:03.0343 2988 COMSysApp - ok
10:17:03.0421 2988 Cpqarray - ok
10:17:03.0484 2988 [ F3AB0933CBD166D271992F411C27CCAF ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
10:17:03.0484 2988 CryptSvc - ok
10:17:03.0531 2988 dac2w2k - ok
10:17:03.0562 2988 dac960nt - ok
10:17:03.0640 2988 [ BE27674D1CBC3214AEC84B4336A38BBF ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
10:17:03.0656 2988 DcomLaunch - ok
10:17:03.0718 2988 [ 8C9A53E285AC5E6704844D0459EC85BE ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
10:17:03.0734 2988 Dhcp - ok
10:17:03.0796 2988 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
10:17:03.0796 2988 Disk - ok
10:17:03.0859 2988 dmadmin - ok
10:17:03.0937 2988 [ DB5FD2BF5B07DC54BFCB3664FF05BD7C ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
10:17:03.0953 2988 dmboot - ok
10:17:04.0000 2988 [ FFF1720AF51171F32F1EAD5CF71F2810 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
10:17:04.0000 2988 dmio - ok
10:17:04.0062 2988 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
10:17:04.0078 2988 dmload - ok
10:17:04.0140 2988 [ 2BFEFE9E865655A76982F050450B9591 ] dmserver C:\WINDOWS\System32\dmserver.dll
10:17:04.0140 2988 dmserver - ok
10:17:04.0218 2988 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
10:17:04.0218 2988 DMusic - ok
10:17:04.0281 2988 [ DFAA406BF19F4EE806A6F8D4342137F7 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
10:17:04.0281 2988 Dnscache - ok
10:17:04.0359 2988 [ 4A3E2BD20157A0946751229E92EB8621 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
10:17:04.0359 2988 Dot3svc - ok
10:17:04.0421 2988 dpti2o - ok
10:17:04.0484 2988 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
10:17:04.0484 2988 drmkaud - ok
10:17:04.0546 2988 [ 0887D9C2BE8D940778CAD1E3B85F2A41 ] EapHost C:\WINDOWS\System32\eapsvc.dll
10:17:04.0562 2988 EapHost - ok
10:17:04.0609 2988 [ A2A4912798F2BE706ABADD3D30800D16 ] ERSvc C:\WINDOWS\System32\ersvc.dll
10:17:04.0609 2988 ERSvc - ok
10:17:04.0671 2988 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] Eventlog C:\WINDOWS\system32\services.exe
10:17:04.0671 2988 Eventlog - ok
10:17:04.0750 2988 [ A371F11EF07653591C8DE26AFB13CE7F ] EventSystem C:\WINDOWS\system32\es.dll
10:17:04.0765 2988 EventSystem - ok
10:17:04.0828 2988 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
10:17:04.0828 2988 Fastfat - ok
10:17:04.0890 2988 [ EE9A2B9EA968A792A053C9D1A86BF870 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
10:17:04.0906 2988 FastUserSwitchingCompatibility - ok
10:17:04.0968 2988 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
10:17:04.0968 2988 Fdc - ok
10:17:05.0015 2988 [ AC366695A0796560AA37215AD5762AAF ] Fips C:\WINDOWS\system32\drivers\Fips.sys
10:17:05.0015 2988 Fips - ok
10:17:05.0062 2988 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
10:17:05.0062 2988 Flpydisk - ok
10:17:05.0140 2988 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys
10:17:05.0140 2988 FltMgr - ok
10:17:05.0265 2988 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
10:17:05.0265 2988 FontCache3.0.0.0 - ok
10:17:05.0312 2988 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:17:05.0312 2988 Fs_Rec - ok
10:17:05.0375 2988 [ 4E664D8541DB4A66B73A24257E322E1F ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
10:17:05.0375 2988 Ftdisk - ok
10:17:05.0453 2988 [ 32A73A8952580B284A47290ADB62032A ] GEARAspiWDM C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys
10:17:05.0453 2988 GEARAspiWDM - ok
10:17:05.0484 2988 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
10:17:05.0500 2988 Gpc - ok
10:17:05.0593 2988 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
10:17:05.0593 2988 gupdate - ok
10:17:05.0640 2988 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
10:17:05.0640 2988 gupdatem - ok
10:17:05.0671 2988 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
10:17:05.0687 2988 gusvc - ok
10:17:05.0765 2988 [ FCFE31FB75F8A6295B6B0AF87A626282 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
10:17:05.0765 2988 helpsvc - ok
10:17:05.0843 2988 [ 00E25EE90166B3E1BE6E74AEBF858306 ] HidServ C:\WINDOWS\System32\hidserv.dll
10:17:05.0843 2988 HidServ - ok
10:17:05.0906 2988 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
10:17:05.0921 2988 HidUsb - ok
10:17:05.0984 2988 [ 7A6B320928F86BC851530D63C82965D9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
10:17:06.0000 2988 hkmsvc - ok
10:17:06.0031 2988 hpn - ok
10:17:06.0093 2988 [ 30CA91E657CEDE2F95359D6EF186F650 ] HPZid412 C:\WINDOWS\system32\DRIVERS\HPZid412.sys
10:17:06.0109 2988 HPZid412 - ok
10:17:06.0171 2988 [ EFD31AFA752AA7C7BBB57BCBE2B01C78 ] HPZipr12 C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
10:17:06.0187 2988 HPZipr12 - ok
10:17:06.0234 2988 [ 7AC43C38CA8FD7ED0B0A4466F753E06E ] HPZius12 C:\WINDOWS\system32\DRIVERS\HPZius12.sys
10:17:06.0234 2988 HPZius12 - ok
10:17:06.0296 2988 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
10:17:06.0312 2988 HTTP - ok
10:17:06.0375 2988 [ 58FE2F2DA3BC5573F4A35B3760D3125F ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
10:17:06.0375 2988 HTTPFilter - ok
10:17:06.0421 2988 i2omgmt - ok
10:17:06.0484 2988 i2omp - ok
10:17:06.0546 2988 [ C528E27945367191E7BAE364930B6932 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
10:17:06.0562 2988 i8042prt - ok
10:17:06.0640 2988 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
10:17:06.0656 2988 IDriverT - ok
10:17:06.0750 2988 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:17:06.0781 2988 idsvc - ok
10:17:06.0828 2988 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
10:17:06.0828 2988 Imapi - ok
10:17:06.0890 2988 [ F7B93AAFAD33B2320954C17E26C8D361 ] ImapiService C:\WINDOWS\system32\imapi.exe
10:17:06.0906 2988 ImapiService - ok
10:17:06.0984 2988 ini910u - ok
10:17:07.0031 2988 IntelIde - ok
10:17:07.0109 2988 [ 27B290D632AF2CF3CF40BFDDB7370985 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
10:17:07.0109 2988 intelppm - ok
10:17:07.0156 2988 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
10:17:07.0156 2988 Ip6Fw - ok
10:17:07.0250 2988 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:17:07.0250 2988 IpFilterDriver - ok
10:17:07.0312 2988 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
10:17:07.0312 2988 IpInIp - ok
10:17:07.0375 2988 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
10:17:07.0375 2988 IpNat - ok
10:17:07.0437 2988 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
10:17:07.0437 2988 IPSec - ok
10:17:07.0531 2988 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
10:17:07.0531 2988 IRENUM - ok
10:17:07.0609 2988 [ CC9F8A2D60AED1A51A3AC34C59B987AE ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
10:17:07.0625 2988 isapnp - ok
10:17:07.0734 2988 [ 999DB5F88C8E145CCA9D471E33227143 ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
10:17:07.0734 2988 JavaQuickStarterService - ok
10:17:07.0812 2988 [ 1B6162FE7F66B1A71A4B70F941C4AA9B ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
10:17:07.0812 2988 Kbdclass - ok
10:17:07.0875 2988 [ 86C8F23616C6C6E5B2776901C17B945B ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
10:17:07.0875 2988 kbdhid - ok
10:17:07.0937 2988 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
10:17:07.0937 2988 kmixer - ok
10:17:08.0015 2988 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
10:17:08.0015 2988 KSecDD - ok
10:17:08.0078 2988 [ 3428E8F86F8ADD36B42FB23542C7B3E4 ] LanmanServer C:\WINDOWS\System32\srvsvc.dll
10:17:08.0078 2988 LanmanServer - ok
10:17:08.0140 2988 [ 936C1D110232D23B621CB0196E4F80F0 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
10:17:08.0140 2988 lanmanworkstation - ok
10:17:08.0187 2988 lbrtfdc - ok
10:17:08.0296 2988 [ 0AB159F536E3E8F7F07113702A07CCA5 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
10:17:08.0296 2988 LmHosts - ok
10:17:08.0390 2988 [ 2F296CE0D49EA3DED210D5D3F325C8FA ] M4iPodWPDService C:\Program Files\Common Files\Mediafour\iPod\M4iPodWPDService.exe
10:17:08.0390 2988 M4iPodWPDService - ok
10:17:08.0453 2988 [ C7182501E051CC77F1BCAA1832A8C6EA ] MDFSYSNT C:\WINDOWS\system32\drivers\MDFSYSNT.sys
10:17:08.0453 2988 MDFSYSNT - ok
10:17:08.0515 2988 [ 221CD1C815B8A6B79389C3F5D1018DE8 ] Messenger C:\WINDOWS\System32\msgsvc.dll
10:17:08.0531 2988 Messenger - ok
10:17:08.0593 2988 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
10:17:08.0593 2988 mnmdd - ok
10:17:08.0656 2988 [ 9A57D046F88F4B69751B11FD40088A61 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
10:17:08.0671 2988 mnmsrvc - ok
10:17:08.0718 2988 [ 44032B0C6D9954D3FD26438330B99EE7 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
10:17:08.0734 2988 Modem - ok
10:17:08.0796 2988 [ 4CB582831DBDE63CE43B45D771218374 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
10:17:08.0796 2988 Mouclass - ok
10:17:08.0859 2988 [ BB269EBA740737AB749B214D568B6812 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
10:17:08.0859 2988 mouhid - ok
10:17:08.0937 2988 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
10:17:08.0937 2988 MountMgr - ok
10:17:09.0000 2988 [ A35576A433F4AEB0D48976A004657CB6 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
10:17:09.0015 2988 MozillaMaintenance - ok
10:17:09.0078 2988 [ C0F8E0C2C3C0437CF37C6781896DC3EC ] MPE C:\WINDOWS\system32\DRIVERS\MPE.sys
10:17:09.0078 2988 MPE - ok
10:17:09.0109 2988 mraid35x - ok
10:17:09.0171 2988 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
10:17:09.0171 2988 MRxDAV - ok
10:17:09.0250 2988 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:17:09.0265 2988 MRxSmb - ok
10:17:09.0328 2988 [ 6DB4D1521CABA9A5FFAB54ADE0AE867D ] MSDTC C:\WINDOWS\system32\msdtc.exe
10:17:09.0328 2988 MSDTC - ok
10:17:09.0437 2988 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
10:17:09.0437 2988 Msfs - ok
10:17:09.0468 2988 MSIServer - ok
10:17:09.0562 2988 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:17:09.0562 2988 MSKSSRV - ok
10:17:09.0609 2988 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:17:09.0609 2988 MSPCLOCK - ok
10:17:09.0656 2988 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
10:17:09.0656 2988 MSPQM - ok
10:17:09.0750 2988 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
10:17:09.0750 2988 mssmbios - ok
10:17:09.0828 2988 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
10:17:09.0828 2988 MSTEE - ok
10:17:09.0890 2988 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
10:17:09.0906 2988 Mup - ok
10:17:09.0953 2988 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
10:17:09.0953 2988 NABTSFEC - ok
10:17:10.0031 2988 [ 6EA362E9DB03D44F6B996F4D8BE237E9 ] napagent C:\WINDOWS\System32\qagentrt.dll
10:17:10.0046 2988 napagent - ok
10:17:10.0140 2988 [ 9D1CCE440552500DED3A62F9D779CDB4 ] NAUpdate C:\Program Files\Nero\Update\NASvc.exe
10:17:10.0156 2988 NAUpdate - ok
10:17:10.0203 2988 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
10:17:10.0203 2988 NDIS - ok
10:17:10.0265 2988 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
10:17:10.0265 2988 NdisIP - ok
10:17:10.0343 2988 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:17:10.0359 2988 NdisTapi - ok
10:17:10.0421 2988 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
10:17:10.0421 2988 Ndisuio - ok
10:17:10.0500 2988 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:17:10.0500 2988 NdisWan - ok
10:17:10.0562 2988 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
10:17:10.0578 2988 NDProxy - ok
10:17:10.0625 2988 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
10:17:10.0625 2988 NetBIOS - ok
10:17:10.0671 2988 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
10:17:10.0687 2988 NetBT - ok
10:17:10.0750 2988 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDE C:\WINDOWS\system32\netdde.exe
10:17:10.0750 2988 NetDDE - ok
10:17:10.0796 2988 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
10:17:10.0796 2988 NetDDEdsdm - ok
10:17:10.0875 2988 [ ED0A176354487CEED65B80A7148AB739 ] Netlogon C:\WINDOWS\system32\lsass.exe
10:17:10.0875 2988 Netlogon - ok
10:17:10.0953 2988 [ 72E1E9E2977BE08BDEEDB6D8FD9D4D40 ] Netman C:\WINDOWS\System32\netman.dll
10:17:10.0968 2988 Netman - ok
10:17:11.0031 2988 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
10:17:11.0046 2988 NetTcpPortSharing - ok
10:17:11.0140 2988 [ 39EE7C3BFBC64BA87CC8CF67386E814C ] Nla C:\WINDOWS\System32\mswsock.dll
10:17:11.0140 2988 Nla - ok
10:17:11.0187 2988 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
10:17:11.0187 2988 Npfs - ok
10:17:11.0265 2988 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
10:17:11.0281 2988 Ntfs - ok
10:17:11.0312 2988 [ ED0A176354487CEED65B80A7148AB739 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
10:17:11.0343 2988 NtLmSsp - ok
10:17:11.0406 2988 [ 023DD70573D644F3D9C8B1258A7BFD08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
10:17:11.0421 2988 NtmsSvc - ok
10:17:11.0468 2988 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
10:17:11.0468 2988 Null - ok
10:17:11.0718 2988 [ 9F4384AA43548DDD438F7B7825D11699 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
10:17:11.0765 2988 nv - ok
10:17:11.0859 2988 [ 0C41C4ACFE00D826DB479C40C1D9EDC8 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe
10:17:11.0875 2988 NVSvc - ok
10:17:11.0937 2988 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
10:17:11.0953 2988 NwlnkFlt - ok
10:17:12.0000 2988 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
10:17:12.0015 2988 NwlnkFwd - ok
10:17:12.0062 2988 [ 46F8DB73B4A53E543F8E371DC7C75BAE ] Parport C:\WINDOWS\system32\drivers\Parport.sys
10:17:12.0062 2988 Parport - ok
10:17:12.0125 2988 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
10:17:12.0140 2988 PartMgr - ok
10:17:12.0203 2988 [ 1FAE19D0457176318BBA4A8795656EBC ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
10:17:12.0203 2988 ParVdm - ok
10:17:12.0265 2988 [ 6CE351D149CB4BEFC702951E471E1730 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
10:17:12.0265 2988 PCI - ok
10:17:12.0296 2988 PCIDump - ok
10:17:12.0343 2988 [ 2DA4EC85E0EA7A45C6B2A05820492D5A ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
10:17:12.0343 2988 PCIIde - ok
10:17:12.0437 2988 [ 4FC31E6C19A5CE5198B1ABFF94CAE758 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
10:17:12.0437 2988 Pcmcia - ok
10:17:12.0468 2988 PDCOMP - ok
10:17:12.0515 2988 PDFRAME - ok
10:17:12.0546 2988 PDRELI - ok
10:17:12.0593 2988 PDRFRAME - ok
10:17:12.0625 2988 perc2 - ok
10:17:12.0656 2988 perc2hib - ok
10:17:12.0781 2988 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] PlugPlay C:\WINDOWS\system32\services.exe
10:17:12.0796 2988 PlugPlay - ok
10:17:12.0859 2988 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
10:17:12.0859 2988 Pml Driver HPZ12 - ok
10:17:12.0937 2988 [ ED0A176354487CEED65B80A7148AB739 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
10:17:12.0953 2988 PolicyAgent - ok
10:17:13.0000 2988 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
10:17:13.0000 2988 PptpMiniport - ok
10:17:13.0031 2988 [ ED0A176354487CEED65B80A7148AB739 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
10:17:13.0046 2988 ProtectedStorage - ok
10:17:13.0078 2988 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
10:17:13.0078 2988 PSched - ok
10:17:13.0125 2988 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
10:17:13.0125 2988 Ptilink - ok
10:17:13.0218 2988 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
10:17:13.0218 2988 PxHelp20 - ok
10:17:13.0265 2988 ql1080 - ok
10:17:13.0296 2988 Ql10wnt - ok
10:17:13.0343 2988 ql12160 - ok
10:17:13.0375 2988 ql1240 - ok
10:17:13.0437 2988 ql1280 - ok
10:17:13.0484 2988 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:17:13.0484 2988 RasAcd - ok
10:17:13.0562 2988 [ 2B5E44EA009F2F374B980E1E9A70635D ] RasAuto C:\WINDOWS\System32\rasauto.dll
10:17:13.0562 2988 RasAuto - ok
10:17:13.0609 2988 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
10:17:13.0625 2988 Rasl2tp - ok
10:17:13.0687 2988 [ D57554C664B64604BD1EE13EA2C07E77 ] RasMan C:\WINDOWS\System32\rasmans.dll
10:17:13.0687 2988 RasMan - ok
10:17:13.0718 2988 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:17:13.0718 2988 RasPppoe - ok
10:17:13.0765 2988 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
10:17:13.0765 2988 Raspti - ok
10:17:13.0812 2988 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:17:13.0812 2988 Rdbss - ok
10:17:13.0843 2988 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
10:17:13.0843 2988 RDPCDD - ok
10:17:13.0953 2988 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
10:17:13.0953 2988 RDPWD - ok
10:17:14.0015 2988 [ C0D9D9711CB74EE9BC66353D8CBDAB0E ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
10:17:14.0031 2988 RDSessMgr - ok
10:17:14.0093 2988 [ 611BFD220305BE3A85AE876EA47D4AA5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
10:17:14.0109 2988 redbook - ok
10:17:14.0171 2988 [ 127C26B5371651043450E52542099ABA ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
10:17:14.0171 2988 RemoteAccess - ok
10:17:14.0265 2988 [ 718B3BDC0BC3C2F7D065A53D26202AF9 ] RpcLocator C:\WINDOWS\system32\locator.exe
10:17:14.0265 2988 RpcLocator - ok
10:17:14.0328 2988 [ BE27674D1CBC3214AEC84B4336A38BBF ] RpcSs C:\WINDOWS\system32\rpcss.dll
10:17:14.0343 2988 RpcSs - ok
10:17:14.0406 2988 [ 09AB2E71E58B078038E3BFDBA7FFC984 ] RSVP C:\WINDOWS\system32\rsvp.exe
10:17:14.0421 2988 RSVP - ok
10:17:14.0484 2988 [ D507C1400284176573224903819FFDA3 ] rtl8139 C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
10:17:14.0484 2988 rtl8139 - ok
10:17:14.0531 2988 [ ED0A176354487CEED65B80A7148AB739 ] SamSs C:\WINDOWS\system32\lsass.exe
10:17:14.0546 2988 SamSs - ok
10:17:14.0609 2988 [ 410046E401EB11E1E6749E9DEEA41D4A ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
10:17:14.0609 2988 SCardSvr - ok
10:17:14.0671 2988 [ 3FF232A7731621B8902D81D42418C93C ] Schedule C:\WINDOWS\system32\schedsvc.dll
10:17:14.0671 2988 Schedule - ok
10:17:14.0734 2988 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
10:17:14.0765 2988 Secdrv - ok
10:17:14.0828 2988 [ 477E2C3CC5E4A0D635BCB0EA8DCAC3C6 ] seclogon C:\WINDOWS\System32\seclogon.dll
10:17:14.0828 2988 seclogon - ok
10:17:14.0875 2988 [ A530B75C10C23C9AB28FDB6CE719E21F ] SENS C:\WINDOWS\system32\sens.dll
10:17:14.0890 2988 SENS - ok
10:17:14.0921 2988 [ B842729337C9B921615C40D3C1A1AF96 ] Serial C:\WINDOWS\system32\drivers\Serial.sys
10:17:14.0921 2988 Serial - ok
10:17:15.0093 2988 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
10:17:15.0093 2988 Sfloppy - ok
10:17:15.0140 2988 [ F58FACA9621D2DB01BD0927D9A0A208E ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
10:17:15.0156 2988 SharedAccess - ok
10:17:15.0203 2988 [ EE9A2B9EA968A792A053C9D1A86BF870 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
10:17:15.0218 2988 ShellHWDetection - ok
10:17:15.0250 2988 Simbad - ok
10:17:15.0500 2988 [ 73E3B5D1F1EB5FDC51A5C3437EEE3348 ] Skype C2C Service C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
10:17:15.0546 2988 Skype C2C Service - ok
10:17:15.0609 2988 [ CA058CB8320CF9E3F978D729E55C82CF ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
10:17:15.0625 2988 SkypeUpdate - ok
10:17:15.0687 2988 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
10:17:15.0703 2988 SLIP - ok
10:17:15.0781 2988 Sparrow - ok
10:17:15.0828 2988 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
10:17:15.0843 2988 splitter - ok
10:17:15.0906 2988 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
10:17:15.0906 2988 Spooler - ok
10:17:15.0984 2988 [ 94610C8653635E4459316A0050D55CE7 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
10:17:15.0984 2988 sr - ok
10:17:16.0031 2988 [ 35B91147124F64AC8081A2EDB9EA4DEE ] srservice C:\WINDOWS\system32\srsvc.dll
10:17:16.0046 2988 srservice - ok
10:17:16.0125 2988 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
10:17:16.0140 2988 Srv - ok
10:17:16.0234 2988 [ BECD5271DC4E3B7C3D035F790FCBC1E5 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
10:17:16.0234 2988 SSDPSRV - ok
10:17:16.0312 2988 [ C1CDD9275F6A115BB0AE1D55D8D27BA6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
10:17:16.0328 2988 stisvc - ok
10:17:16.0375 2988 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
10:17:16.0390 2988 streamip - ok
10:17:16.0437 2988 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
10:17:16.0437 2988 swenum - ok
10:17:16.0484 2988 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
10:17:16.0484 2988 swmidi - ok
10:17:16.0531 2988 SwPrv - ok
10:17:16.0562 2988 symc810 - ok
10:17:16.0609 2988 symc8xx - ok
10:17:16.0671 2988 sym_hi - ok
10:17:16.0703 2988 sym_u3 - ok
10:17:16.0750 2988 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
10:17:16.0750 2988 sysaudio - ok
10:17:16.0828 2988 [ CE06F01B88ACE199A1BF460CAC29C110 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
10:17:16.0843 2988 SysmonLog - ok
10:17:16.0906 2988 [ C2546CD7A398476F9DF5614B2AE160E8 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
10:17:16.0906 2988 TapiSrv - ok
10:17:16.0968 2988 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
10:17:16.0984 2988 Tcpip - ok
10:17:17.0046 2988 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
10:17:17.0062 2988 TDPIPE - ok
10:17:17.0109 2988 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
10:17:17.0109 2988 TDTCP - ok
10:17:17.0187 2988 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
10:17:17.0187 2988 TermDD - ok
10:17:17.0250 2988 [ A75DD6FC3DBEE4FFF5EBC9F2C28BB66E ] TermService C:\WINDOWS\System32\termsrv.dll
10:17:17.0265 2988 TermService - ok
10:17:17.0312 2988 [ EE9A2B9EA968A792A053C9D1A86BF870 ] Themes C:\WINDOWS\System32\shsvcs.dll
10:17:17.0328 2988 Themes - ok
10:17:17.0359 2988 TosIde - ok
10:17:17.0437 2988 [ 38853304CCB938D30E0C4CDE8D2C2A8A ] TrkWks C:\WINDOWS\system32\trkwks.dll
10:17:17.0437 2988 TrkWks - ok
10:17:17.0515 2988 [ D85938F272D1BCF3DB3A31FC0A048928 ] uagp35 C:\WINDOWS\system32\DRIVERS\uagp35.sys
10:17:17.0515 2988 uagp35 - ok
10:17:17.0593 2988 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
10:17:17.0593 2988 Udfs - ok
10:17:17.0687 2988 [ 332D341D92B933600D41953B08360DFB ] UleadBurningHelper C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
10:17:17.0703 2988 UleadBurningHelper - ok
10:17:17.0718 2988 ultra - ok
10:17:17.0796 2988 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
10:17:17.0796 2988 Update - ok
10:17:17.0859 2988 [ 651BD90DCEE5B7BDC74A2EB7C9266F9E ] upnphost C:\WINDOWS\System32\upnphost.dll
10:17:17.0859 2988 upnphost - ok
10:17:17.0921 2988 [ 20A0F6A11959E92908717D09E87D670D ] UPS C:\WINDOWS\System32\ups.exe
10:17:17.0921 2988 UPS - ok
10:17:17.0984 2988 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
10:17:18.0000 2988 usbccgp - ok
10:17:18.0031 2988 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
10:17:18.0031 2988 usbehci - ok
10:17:18.0109 2988 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
10:17:18.0109 2988 usbhub - ok
10:17:18.0171 2988 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
10:17:18.0171 2988 usbprint - ok
10:17:18.0250 2988 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
10:17:18.0250 2988 usbscan - ok
10:17:18.0296 2988 [ A32426D9B14A089EAA1D922E0C5801A9 ] usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
10:17:18.0296 2988 usbstor - ok
10:17:18.0343 2988 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
10:17:18.0343 2988 usbuhci - ok
10:17:18.0390 2988 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
10:17:18.0390 2988 VgaSave - ok
10:17:18.0453 2988 [ 0E3E3FAE3A0A58B8D936A8E841A17D16 ] viaagp1 C:\WINDOWS\system32\DRIVERS\viaagp1.sys
10:17:18.0453 2988 viaagp1 - ok
10:17:18.0500 2988 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
10:17:18.0515 2988 ViaIde - ok
10:17:18.0578 2988 [ 28A4B296B47782173C346E376CB374D1 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
10:17:18.0578 2988 VolSnap - ok
10:17:18.0656 2988 [ D6BA1A63D9E00933F1CD2A885573AFB2 ] VSS C:\WINDOWS\System32\vssvc.exe
10:17:18.0671 2988 VSS - ok
10:17:18.0750 2988 [ FA4E1CDBA256787F2149F4AAD07BC91F ] W32Time C:\WINDOWS\system32\w32time.dll
10:17:18.0765 2988 W32Time - ok
10:17:18.0828 2988 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:17:18.0828 2988 Wanarp - ok
10:17:18.0875 2988 WDICA - ok
10:17:18.0921 2988 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
10:17:18.0921 2988 wdmaud - ok
10:17:18.0968 2988 [ 47AE51048A82DFA1CD6B51D369F7E169 ] WebClient C:\WINDOWS\System32\webclnt.dll
10:17:18.0984 2988 WebClient - ok
10:17:19.0046 2988 [ 0E507042CCEFC40B8BB5DDE75A7BD0C7 ] wfcxacap C:\WINDOWS\system32\DRIVERS\wfcxacap.sys
10:17:19.0046 2988 wfcxacap - ok
10:17:19.0125 2988 [ B8ACB6B48F928FF5E58B1A2DC3FA628C ] wfcxatun C:\WINDOWS\system32\drivers\wfcxatun.sys
10:17:19.0125 2988 wfcxatun - ok
10:17:19.0171 2988 [ E32EEEAC4ED0249474A2C9B71F1D5A73 ] wfcxdtun C:\WINDOWS\system32\drivers\wfcxdtun.sys
10:17:19.0187 2988 wfcxdtun - ok
10:17:19.0234 2988 [ FC4F80B8C23DBF4D23A9A4DED38CF430 ] wfcxtcap C:\WINDOWS\system32\drivers\wfcxtcap.sys
10:17:19.0234 2988 wfcxtcap - ok
10:17:19.0281 2988 [ E9905845ABC7B3521F642F9C8D08A03E ] WFCXVCAP C:\WINDOWS\system32\drivers\wfcxvcap.sys
10:17:19.0296 2988 WFCXVCAP - ok
10:17:19.0390 2988 [ E488332126E3B1182D2B8A0C35408EC6 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
10:17:19.0421 2988 winmgmt - ok
10:17:19.0515 2988 [ 4D34CEDD74BDBF2B6A935EAE3BF80543 ] WinRM C:\WINDOWS\system32\WsmSvc.dll
10:17:19.0546 2988 WinRM - ok
10:17:19.0671 2988 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
10:17:19.0671 2988 WmdmPmSN - ok
10:17:19.0781 2988 [ 23F6F03272F7E5679F1F050AED5ACEE6 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
10:17:19.0781 2988 WmiApSrv - ok
10:17:19.0890 2988 [ 3739866D20ABD42F26A7B85F9E2560AF ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
10:17:19.0921 2988 WMPNetworkSvc - ok
10:17:19.0984 2988 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys
10:17:19.0984 2988 WpdUsb - ok
10:17:20.0093 2988 [ B800EEC15851597405784126C407188C ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
10:17:20.0125 2988 WPFFontCache_v0400 - ok
10:17:20.0187 2988 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
10:17:20.0203 2988 WS2IFSL - ok
10:17:20.0265 2988 [ 4C86D5FAF78194995AF9CC1075F65DD3 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
10:17:20.0281 2988 wscsvc - ok
10:17:20.0312 2988 WSearch - ok
10:17:20.0406 2988 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
10:17:20.0406 2988 WSTCODEC - ok
10:17:20.0484 2988 [ C1364564800EE9784192145324A23308 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
10:17:20.0484 2988 wuauserv - ok
10:17:20.0546 2988 [ EAA6324F51214D2F6718977EC9CE0DEF ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
10:17:20.0546 2988 WudfPf - ok
10:17:20.0609 2988 [ F91FF1E51FCA30B3C3981DB7D5924252 ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
10:17:20.0609 2988 WudfRd - ok
10:17:20.0656 2988 [ DDEE3682FE97037C45F4D7AB467CB8B6 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
10:17:20.0671 2988 WudfSvc - ok
10:17:20.0750 2988 [ A27D4BA7264C0BF52F32D10405BEA1D4 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
10:17:20.0781 2988 WZCSVC - ok
10:17:20.0843 2988 [ EAA4BB9EDB3FB10CF8979FE65E63658F ] xmlprov C:\WINDOWS\System32\xmlprov.dll
10:17:20.0859 2988 xmlprov - ok
10:17:20.0906 2988 ================ Scan global ===============================
10:17:20.0953 2988 [ F36278E42C8C5DF03CE17DAC8231C91C ] C:\WINDOWS\system32\basesrv.dll
10:17:21.0015 2988 [ 4C0AA4ABC4E21672B55D8A700AF2B2A6 ] C:\WINDOWS\system32\winsrv.dll
10:17:21.0062 2988 [ 4C0AA4ABC4E21672B55D8A700AF2B2A6 ] C:\WINDOWS\system32\winsrv.dll
10:17:21.0093 2988 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] C:\WINDOWS\system32\services.exe
10:17:21.0109 2988 [Global] - ok
10:17:21.0125 2988 ================ Scan MBR ==================================
10:17:21.0156 2988 [ 413FC2A0C716421B3158746D63736515 ] \Device\Harddisk0\DR0
10:17:21.0359 2988 \Device\Harddisk0\DR0 - ok
10:17:21.0375 2988 ================ Scan VBR ==================================
10:17:21.0390 2988 [ EC8F7CA91A8EB083F3BA18B5C6A6E751 ] \Device\Harddisk0\DR0\Partition1
10:17:21.0390 2988 \Device\Harddisk0\DR0\Partition1 - ok
10:17:21.0437 2988 [ 7CC40887C48E227DE8F64E6994A7CF10 ] \Device\Harddisk0\DR0\Partition2
10:17:21.0453 2988 \Device\Harddisk0\DR0\Partition2 - ok
10:17:21.0468 2988 ============================================================
10:17:21.0468 2988 Scan finished
10:17:21.0468 2988 ============================================================
10:17:21.0546 0924 Detected object count: 0
10:17:21.0546 0924 Actual detected object count: 0
10:17:33.0312 2920 Deinitialize success


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 71 hostů