Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Prosím o kontrolu logu
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
ComboFix 13-10-15.02 - Master Tycun 15.10.2013 15:23:19.1.4 - x86
Microsoft Windows 7 Home Basic 6.1.7601.1.1250.420.1033.18.3579.1974 [GMT 2:00]
Spuštěný z: c:\users\Master Tycun\Downloads\ComboFix.exe
AV: AVG Internet Security 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2014 *Enabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\SETUPDICEVENTUREUSA_V106_20130529170807.EXE
c:\windows\system32\frapsvid.dll
c:\windows\System32\netset.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-09-15 do 2013-10-15 )))))))))))))))))))))))))))))))
.
.
2013-10-15 13:37 . 2013-10-15 13:37 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-10-15 13:37 . 2013-10-15 13:37 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-10-11 13:19 . 2013-07-04 11:50 530432 ----a-w- c:\windows\system32\comctl32.dll
2013-10-11 13:18 . 2013-07-03 04:02 36352 ----a-w- c:\windows\system32\drivers\usbscan.sys
2013-10-11 13:18 . 2013-07-03 03:36 55808 ----a-w- c:\windows\system32\drivers\hidclass.sys
2013-10-11 13:18 . 2013-07-03 03:36 25728 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-10-11 13:18 . 2013-08-01 11:03 729024 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-10-11 13:17 . 2013-07-20 10:33 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-11 13:17 . 2013-06-06 03:01 295424 ----a-w- c:\windows\system32\atmfd.dll
2013-10-11 13:17 . 2013-06-06 04:52 26112 ----a-w- c:\windows\system32\lpk.dll
2013-10-11 13:17 . 2013-06-06 04:51 70656 ----a-w- c:\windows\system32\fontsub.dll
2013-10-11 13:17 . 2013-06-06 04:50 10240 ----a-w- c:\windows\system32\dciman32.dll
2013-10-11 13:17 . 2013-06-06 03:01 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-10-11 13:17 . 2013-08-28 01:04 2348544 ----a-w- c:\windows\system32\win32k.sys
2013-10-11 13:06 . 2013-07-12 10:07 80896 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
2013-10-11 13:06 . 2013-07-12 10:07 86016 ----a-w- c:\windows\system32\drivers\usbcir.sys
2013-10-11 12:47 . 2013-10-11 12:47 -------- d-----w- c:\windows\ERUNT
2013-10-11 12:43 . 2013-06-25 22:56 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-10-11 12:43 . 2012-11-28 22:57 9728 ----a-w- c:\windows\system32\Wdfres.dll
2013-10-11 12:43 . 2012-11-28 22:57 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2013-10-10 13:20 . 2013-10-11 12:23 -------- d-----w- C:\AdwCleaner
2013-10-09 16:25 . 2013-10-09 16:25 -------- d-----w- c:\users\Master Tycun\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me
2013-10-09 16:22 . 2013-10-09 16:23 -------- d-----w- c:\program files\OCCTPT
2013-10-09 14:11 . 2013-10-09 14:11 17226632 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe
2013-10-09 12:01 . 2013-10-09 12:01 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\AVG2014
2013-10-09 11:58 . 2013-10-09 11:58 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\TuneUp Software
2013-10-09 11:54 . 2013-10-09 12:00 -------- d-----w- c:\programdata\AVG2014
2013-10-09 11:52 . 2013-10-09 14:02 -------- d-----w- c:\users\Master Tycun\AppData\Local\Avg2014
2013-10-09 11:52 . 2013-10-09 11:52 -------- d-----w- c:\users\Master Tycun\AppData\Local\MFAData
2013-10-04 11:42 . 2013-10-04 11:42 -------- d-----w- c:\users\Master Tycun\AppData\Local\LogMeIn
2013-10-04 11:42 . 2013-10-04 11:42 -------- d-----w- c:\programdata\LogMeIn
2013-10-03 12:29 . 2013-10-03 12:29 -------- d-----w- c:\program files\LogMeIn Hamachi
2013-09-24 16:07 . 2013-10-15 13:05 -------- d-----r- c:\users\Master Tycun\Dropbox
2013-09-24 16:04 . 2013-10-15 13:05 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\Dropbox
2013-09-20 11:44 . 2013-09-20 11:44 -------- d-----w- c:\program files\AGEIA Technologies
2013-09-16 16:16 . 2013-09-16 16:16 -------- d-----w- c:\program files\Phyxion.net
2013-09-16 11:39 . 2013-09-16 20:06 1085408 ----a-w- c:\programdata\Microsoft\WDExpress\11.0\1029\ResourceCache.dll
2013-09-16 11:10 . 2013-09-16 11:10 -------- d-----w- c:\program files\NuGet
2013-09-16 11:10 . 2013-09-16 11:45 -------- d-----w- c:\program files\Common Files\Merge Modules
2013-09-16 11:10 . 2013-09-16 11:10 -------- d-----w- c:\windows\symbols
2013-09-16 11:08 . 2013-09-16 11:08 -------- d-----w- c:\program files\Common Files\Microsoft
2013-09-16 11:02 . 2013-09-16 11:02 -------- d-----w- c:\programdata\regid.1991-06.com.microsoft
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-09 17:00 . 2012-04-05 10:12 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-10-09 17:00 . 2011-10-15 10:32 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-02 14:59 . 2012-09-04 12:44 37664 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-09-16 20:06 . 2013-01-30 17:20 1060832 ----a-w- c:\programdata\Microsoft\WDExpress\11.0\1033\ResourceCache.dll
2013-09-12 08:51 . 2013-02-25 22:22 1222824 ----a-w- c:\windows\system32\nvumdshim.dll
2013-09-12 08:51 . 2013-02-25 22:22 2630304 ----a-w- c:\windows\system32\nvapi.dll
2013-09-12 08:51 . 2013-02-25 22:22 13628208 ----a-w- c:\windows\system32\nvwgf2um.dll
2013-09-12 08:51 . 2013-02-25 22:22 12947360 ----a-w- c:\windows\system32\nvd3dum.dll
2013-09-12 06:28 . 2010-06-13 23:09 4265760 ----a-w- c:\windows\system32\nvcpl.dll
2013-09-12 06:28 . 2010-06-13 23:09 3006240 ----a-w- c:\windows\system32\nvsvc.dll
2013-09-12 06:28 . 2010-06-13 23:09 662816 ----a-w- c:\windows\system32\nvvsvc.exe
2013-09-12 06:28 . 2010-06-13 23:09 62752 ----a-w- c:\windows\system32\nvshext.dll
2013-09-12 06:28 . 2010-06-13 23:09 209184 ----a-w- c:\windows\system32\nvmctray.dll
2013-09-11 23:17 . 2013-09-11 23:17 571168 ----a-w- c:\windows\system32\nvStreaming.exe
2013-09-10 20:11 . 2013-09-10 20:11 22840 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
2013-09-08 20:12 . 2013-09-08 20:12 27448 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2013-09-02 08:39 . 2013-09-02 08:39 176952 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2013-09-02 08:28 . 2013-09-02 08:28 145720 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2013-09-02 08:28 . 2013-09-02 08:28 209208 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2013-09-02 08:28 . 2013-09-02 08:28 223032 ----a-w- c:\windows\system32\drivers\avglogx.sys
2013-08-20 20:54 . 2013-08-20 20:54 102200 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2013-08-20 13:33 . 2013-09-07 15:31 33568 ----a-w- c:\windows\system32\drivers\nvvad32v.sys
2013-08-20 13:32 . 2013-09-07 15:31 28448 ----a-w- c:\windows\system32\nvaudcap32v.dll
2013-08-04 16:21 . 2010-11-06 09:37 139832 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2013-08-04 16:21 . 2010-11-24 21:41 281768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2013-08-04 16:21 . 2010-11-06 09:37 281768 ----a-w- c:\windows\system32\PnkBstrB.exe
2013-08-04 16:20 . 2010-11-06 09:37 271200 ----a-w- c:\windows\system32\PnkBstrB.ex0
2013-08-02 01:50 . 2013-09-12 12:53 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 01:49 . 2013-09-12 12:53 293376 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 01:48 . 2013-09-12 12:53 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-08-02 00:52 . 2013-09-12 12:53 271360 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:43 . 2013-09-12 12:53 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-08-01 14:08 . 2013-08-01 14:08 193848 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2013-08-01 14:06 . 2013-08-01 14:06 120120 ----a-w- c:\windows\system32\drivers\avgdiskx.sys
2013-07-25 08:57 . 2013-08-14 11:14 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-19 01:41 . 2013-08-14 11:14 2048 ----a-w- c:\windows\system32\tzres.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OscarEditor"="c:\program files\Anti-Vibrate Oscar Editor\OscarEditor.exe" [2009-12-22 2647040]
"ICQ"="c:\program files\ICQ7.5\ICQ.exe" [2011-08-01 124480]
"Steam"="c:\program files\Steam\steam.exe" [2013-10-09 1813928]
"Sony PC Companion"="c:\program files\Sony\Sony PC Companion\PCCompanion.exe" [2013-05-29 449248]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-06-21 19875432]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-01-19 8452640]
"NUSB3MON"="c:\program files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2009-10-21 106496]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-12-15 103720]
"UCam_Menu"="c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" [2009-02-17 218408]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2008-08-14 611712]
"RemoteControl11"="c:\program files\CyberLink\PowerDVD11\PDVD11Serv.exe" [2011-08-24 230696]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2011-07-11 74752]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"Nvtmru"="c:\program files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-08-27 1028896]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2013-10-01 2345296]
"AVG_UI"="c:\program files\AVG\AVG2014\avgui.exe" [2013-09-15 4851760]
.
c:\users\Master Tycun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2013-10-10 29768376]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Backup Manager.lnk - c:\program files\BackupManager\BkupMgr.exe [2010-11-1 3427488]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2009-5-21 275768]
MBCameraMonitor.lnk - c:\program files\PIXELA\Everio MediaBrowser\MBCameraMonitor.exe [2013-8-11 541976]
Rainmeter.lnk - c:\program files\Rainmeter\Rainmeter.exe [2012-1-8 105160]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2010-04-01 09:16 357696 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2010-01-22 10:08 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msmtqvnnSrv]
2013-08-27 20:55 1558 --s-a-w- c:\windows\inf\msmtqvnn.vbe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
2008-11-14 12:35 305064 ----a-r- c:\program files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe
.
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2014\avgidsagent.exe [2013-09-03 3538480]
R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2013-06-21 162408]
R2 vToolbarUpdater17.0.12;vToolbarUpdater17.0.12;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\17.0.12\ToolbarUpdater.exe [x]
R3 dump_wmimmc;dump_wmimmc;c:\program files\Games-Masters.com\CABAL Online (Europe)\GameGuard\dump_wmimmc.sys [x]
R3 GarenaPEngine;GarenaPEngine;c:\users\MASTER~1\AppData\Local\Temp\WOA345D.tmp [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2013-01-18 12400]
R3 GGSAFERDriver;GGSAFER Driver;c:\program files\Garena\safedrv.sys [x]
R3 LgBttPort;LGE Bluetooth TransPort;c:\windows\system32\DRIVERS\lgbtport.sys [x]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\DRIVERS\lgbtbus.sys [x]
R3 LGVMODEM;LGE Virtual Modem;c:\windows\system32\DRIVERS\lgvmodem.sys [x]
R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des [2011-08-23 4729616]
R3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver;c:\windows\system32\DRIVERS\PcaSp60.sys [2010-09-07 28672]
R3 Sony PC Companion;Sony PC Companion;c:\program files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;WatAdminSvc;c:\windows\system32\Wat\WatAdminSvc.exe [2010-11-01 1343400]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S0 AVGIDSHX;AVGIDSHX;c:\windows\system32\DRIVERS\avgidshx.sys [2013-09-02 145720]
S0 Avglogx;AVG Logging Driver;c:\windows\system32\DRIVERS\avglogx.sys [2013-09-02 223032]
S0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys [2013-09-08 27448]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-11-03 691696]
S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [2010-03-01 18472]
S1 Avgdiskx;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiskx.sys [2013-08-01 120120]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6x.sys [2012-09-04 50296]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdriverx.sys [2013-09-02 209208]
S1 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\avgidsshimx.sys [2013-09-10 22840]
S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx86.sys [2013-09-02 176952]
S1 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys [2013-08-01 193848]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-10-02 37664]
S2 {329F96B6-DF1E-4328-BFDA-39EA953C1312};Power Control [2011/11/20 18:20];c:\program files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl [2011-08-25 12:06 77296]
S2 avgfws;AVG Firewall;c:\program files\AVG\AVG2014\avgfws.exe [2013-09-22 1358944]
S2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2014\avgwdsvc.exe [2013-09-22 301152]
S2 CLHNServiceForPowerDVD;CLHNServiceForPowerDVD;c:\program files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [2011-08-24 83240]
S2 CyberLink PowerDVD 11.0 Monitor Service;CyberLink PowerDVD 11.0 Monitor Service;c:\program files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [2011-08-26 75048]
S2 CyberLink PowerDVD 11.0 Service;CyberLink PowerDVD 11.0 Service;c:\program files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [2011-08-26 292136]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [2013-10-01 1612112]
S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-08-26 375056]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S2 ntk_PowerDVD;ntk_PowerDVD;c:\program files\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD.sys [2011-08-24 71664]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-08-27 14573856]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-09-11 414496]
S2 TeamViewer8;TeamViewer 8;c:\program files\TeamViewer\Version8\TeamViewer_Service.exe [2012-12-14 3467768]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 22856]
S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2009-10-26 58240]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2009-10-26 136704]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad32v.sys [2013-08-20 33568]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-11-27 233472]
S3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\DRIVERS\seehcri.sys [2011-01-19 27632]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
HPService REG_MULTI_SZ HPSLPSVC
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2010-01-22 10:06 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-10-15 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-05 17:00]
.
2013-10-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-04-12 15:38]
.
2013-10-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-04-12 15:38]
.
2013-10-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000Core.job
- c:\users\Master Tycun\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-04 15:05]
.
2013-10-15 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000UA.job
- c:\users\Master Tycun\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-04 15:05]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\Master Tycun\AppData\Roaming\Mozilla\Firefox\Profiles\9wckfis8.default-1351625711327\
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q=
FF - ExtSQL: !HIDDEN! 2012-10-09 15:43; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
HKLM-Run-netset - c:\windows\System32\netset.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\GarenaPEngine]
"ImagePath"="\??\c:\users\MASTER~1\AppData\Local\Temp\WOA345D.tmp"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\{329F96B6-DF1E-4328-BFDA-39EA953C1312}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(964)
c:\program files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
.
Celkový čas: 2013-10-15 15:39:32
ComboFix-quarantined-files.txt 2013-10-15 13:39
.
Před spuštěním: 969 391 853 568 bytes free
Po spuštění: 973 144 563 712 bytes free
.
- - End Of File - - 0865B56E7888144EF8A66AEC415FD748
A36C5E4F47E84449FF07ED3517B43A31
Microsoft Windows 7 Home Basic 6.1.7601.1.1250.420.1033.18.3579.1974 [GMT 2:00]
Spuštěný z: c:\users\Master Tycun\Downloads\ComboFix.exe
AV: AVG Internet Security 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2014 *Enabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\SETUPDICEVENTUREUSA_V106_20130529170807.EXE
c:\windows\system32\frapsvid.dll
c:\windows\System32\netset.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-09-15 do 2013-10-15 )))))))))))))))))))))))))))))))
.
.
2013-10-15 13:37 . 2013-10-15 13:37 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-10-15 13:37 . 2013-10-15 13:37 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-10-11 13:19 . 2013-07-04 11:50 530432 ----a-w- c:\windows\system32\comctl32.dll
2013-10-11 13:18 . 2013-07-03 04:02 36352 ----a-w- c:\windows\system32\drivers\usbscan.sys
2013-10-11 13:18 . 2013-07-03 03:36 55808 ----a-w- c:\windows\system32\drivers\hidclass.sys
2013-10-11 13:18 . 2013-07-03 03:36 25728 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-10-11 13:18 . 2013-08-01 11:03 729024 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-10-11 13:17 . 2013-07-20 10:33 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-11 13:17 . 2013-06-06 03:01 295424 ----a-w- c:\windows\system32\atmfd.dll
2013-10-11 13:17 . 2013-06-06 04:52 26112 ----a-w- c:\windows\system32\lpk.dll
2013-10-11 13:17 . 2013-06-06 04:51 70656 ----a-w- c:\windows\system32\fontsub.dll
2013-10-11 13:17 . 2013-06-06 04:50 10240 ----a-w- c:\windows\system32\dciman32.dll
2013-10-11 13:17 . 2013-06-06 03:01 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-10-11 13:17 . 2013-08-28 01:04 2348544 ----a-w- c:\windows\system32\win32k.sys
2013-10-11 13:06 . 2013-07-12 10:07 80896 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
2013-10-11 13:06 . 2013-07-12 10:07 86016 ----a-w- c:\windows\system32\drivers\usbcir.sys
2013-10-11 12:47 . 2013-10-11 12:47 -------- d-----w- c:\windows\ERUNT
2013-10-11 12:43 . 2013-06-25 22:56 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-10-11 12:43 . 2012-11-28 22:57 9728 ----a-w- c:\windows\system32\Wdfres.dll
2013-10-11 12:43 . 2012-11-28 22:57 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2013-10-10 13:20 . 2013-10-11 12:23 -------- d-----w- C:\AdwCleaner
2013-10-09 16:25 . 2013-10-09 16:25 -------- d-----w- c:\users\Master Tycun\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me
2013-10-09 16:22 . 2013-10-09 16:23 -------- d-----w- c:\program files\OCCTPT
2013-10-09 14:11 . 2013-10-09 14:11 17226632 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe
2013-10-09 12:01 . 2013-10-09 12:01 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\AVG2014
2013-10-09 11:58 . 2013-10-09 11:58 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\TuneUp Software
2013-10-09 11:54 . 2013-10-09 12:00 -------- d-----w- c:\programdata\AVG2014
2013-10-09 11:52 . 2013-10-09 14:02 -------- d-----w- c:\users\Master Tycun\AppData\Local\Avg2014
2013-10-09 11:52 . 2013-10-09 11:52 -------- d-----w- c:\users\Master Tycun\AppData\Local\MFAData
2013-10-04 11:42 . 2013-10-04 11:42 -------- d-----w- c:\users\Master Tycun\AppData\Local\LogMeIn
2013-10-04 11:42 . 2013-10-04 11:42 -------- d-----w- c:\programdata\LogMeIn
2013-10-03 12:29 . 2013-10-03 12:29 -------- d-----w- c:\program files\LogMeIn Hamachi
2013-09-24 16:07 . 2013-10-15 13:05 -------- d-----r- c:\users\Master Tycun\Dropbox
2013-09-24 16:04 . 2013-10-15 13:05 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\Dropbox
2013-09-20 11:44 . 2013-09-20 11:44 -------- d-----w- c:\program files\AGEIA Technologies
2013-09-16 16:16 . 2013-09-16 16:16 -------- d-----w- c:\program files\Phyxion.net
2013-09-16 11:39 . 2013-09-16 20:06 1085408 ----a-w- c:\programdata\Microsoft\WDExpress\11.0\1029\ResourceCache.dll
2013-09-16 11:10 . 2013-09-16 11:10 -------- d-----w- c:\program files\NuGet
2013-09-16 11:10 . 2013-09-16 11:45 -------- d-----w- c:\program files\Common Files\Merge Modules
2013-09-16 11:10 . 2013-09-16 11:10 -------- d-----w- c:\windows\symbols
2013-09-16 11:08 . 2013-09-16 11:08 -------- d-----w- c:\program files\Common Files\Microsoft
2013-09-16 11:02 . 2013-09-16 11:02 -------- d-----w- c:\programdata\regid.1991-06.com.microsoft
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-09 17:00 . 2012-04-05 10:12 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-10-09 17:00 . 2011-10-15 10:32 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-02 14:59 . 2012-09-04 12:44 37664 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-09-16 20:06 . 2013-01-30 17:20 1060832 ----a-w- c:\programdata\Microsoft\WDExpress\11.0\1033\ResourceCache.dll
2013-09-12 08:51 . 2013-02-25 22:22 1222824 ----a-w- c:\windows\system32\nvumdshim.dll
2013-09-12 08:51 . 2013-02-25 22:22 2630304 ----a-w- c:\windows\system32\nvapi.dll
2013-09-12 08:51 . 2013-02-25 22:22 13628208 ----a-w- c:\windows\system32\nvwgf2um.dll
2013-09-12 08:51 . 2013-02-25 22:22 12947360 ----a-w- c:\windows\system32\nvd3dum.dll
2013-09-12 06:28 . 2010-06-13 23:09 4265760 ----a-w- c:\windows\system32\nvcpl.dll
2013-09-12 06:28 . 2010-06-13 23:09 3006240 ----a-w- c:\windows\system32\nvsvc.dll
2013-09-12 06:28 . 2010-06-13 23:09 662816 ----a-w- c:\windows\system32\nvvsvc.exe
2013-09-12 06:28 . 2010-06-13 23:09 62752 ----a-w- c:\windows\system32\nvshext.dll
2013-09-12 06:28 . 2010-06-13 23:09 209184 ----a-w- c:\windows\system32\nvmctray.dll
2013-09-11 23:17 . 2013-09-11 23:17 571168 ----a-w- c:\windows\system32\nvStreaming.exe
2013-09-10 20:11 . 2013-09-10 20:11 22840 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
2013-09-08 20:12 . 2013-09-08 20:12 27448 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2013-09-02 08:39 . 2013-09-02 08:39 176952 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2013-09-02 08:28 . 2013-09-02 08:28 145720 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2013-09-02 08:28 . 2013-09-02 08:28 209208 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2013-09-02 08:28 . 2013-09-02 08:28 223032 ----a-w- c:\windows\system32\drivers\avglogx.sys
2013-08-20 20:54 . 2013-08-20 20:54 102200 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2013-08-20 13:33 . 2013-09-07 15:31 33568 ----a-w- c:\windows\system32\drivers\nvvad32v.sys
2013-08-20 13:32 . 2013-09-07 15:31 28448 ----a-w- c:\windows\system32\nvaudcap32v.dll
2013-08-04 16:21 . 2010-11-06 09:37 139832 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2013-08-04 16:21 . 2010-11-24 21:41 281768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2013-08-04 16:21 . 2010-11-06 09:37 281768 ----a-w- c:\windows\system32\PnkBstrB.exe
2013-08-04 16:20 . 2010-11-06 09:37 271200 ----a-w- c:\windows\system32\PnkBstrB.ex0
2013-08-02 01:50 . 2013-09-12 12:53 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 01:49 . 2013-09-12 12:53 293376 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 01:48 . 2013-09-12 12:53 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-08-02 00:52 . 2013-09-12 12:53 271360 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:43 . 2013-09-12 12:53 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-08-01 14:08 . 2013-08-01 14:08 193848 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2013-08-01 14:06 . 2013-08-01 14:06 120120 ----a-w- c:\windows\system32\drivers\avgdiskx.sys
2013-07-25 08:57 . 2013-08-14 11:14 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-19 01:41 . 2013-08-14 11:14 2048 ----a-w- c:\windows\system32\tzres.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OscarEditor"="c:\program files\Anti-Vibrate Oscar Editor\OscarEditor.exe" [2009-12-22 2647040]
"ICQ"="c:\program files\ICQ7.5\ICQ.exe" [2011-08-01 124480]
"Steam"="c:\program files\Steam\steam.exe" [2013-10-09 1813928]
"Sony PC Companion"="c:\program files\Sony\Sony PC Companion\PCCompanion.exe" [2013-05-29 449248]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-06-21 19875432]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-01-19 8452640]
"NUSB3MON"="c:\program files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2009-10-21 106496]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-12-15 103720]
"UCam_Menu"="c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" [2009-02-17 218408]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2008-08-14 611712]
"RemoteControl11"="c:\program files\CyberLink\PowerDVD11\PDVD11Serv.exe" [2011-08-24 230696]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2011-07-11 74752]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"Nvtmru"="c:\program files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-08-27 1028896]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2013-10-01 2345296]
"AVG_UI"="c:\program files\AVG\AVG2014\avgui.exe" [2013-09-15 4851760]
.
c:\users\Master Tycun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2013-10-10 29768376]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Backup Manager.lnk - c:\program files\BackupManager\BkupMgr.exe [2010-11-1 3427488]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2009-5-21 275768]
MBCameraMonitor.lnk - c:\program files\PIXELA\Everio MediaBrowser\MBCameraMonitor.exe [2013-8-11 541976]
Rainmeter.lnk - c:\program files\Rainmeter\Rainmeter.exe [2012-1-8 105160]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2010-04-01 09:16 357696 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2010-01-22 10:08 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msmtqvnnSrv]
2013-08-27 20:55 1558 --s-a-w- c:\windows\inf\msmtqvnn.vbe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
2008-11-14 12:35 305064 ----a-r- c:\program files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe
.
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2014\avgidsagent.exe [2013-09-03 3538480]
R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2013-06-21 162408]
R2 vToolbarUpdater17.0.12;vToolbarUpdater17.0.12;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\17.0.12\ToolbarUpdater.exe [x]
R3 dump_wmimmc;dump_wmimmc;c:\program files\Games-Masters.com\CABAL Online (Europe)\GameGuard\dump_wmimmc.sys [x]
R3 GarenaPEngine;GarenaPEngine;c:\users\MASTER~1\AppData\Local\Temp\WOA345D.tmp [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2013-01-18 12400]
R3 GGSAFERDriver;GGSAFER Driver;c:\program files\Garena\safedrv.sys [x]
R3 LgBttPort;LGE Bluetooth TransPort;c:\windows\system32\DRIVERS\lgbtport.sys [x]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\DRIVERS\lgbtbus.sys [x]
R3 LGVMODEM;LGE Virtual Modem;c:\windows\system32\DRIVERS\lgvmodem.sys [x]
R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des [2011-08-23 4729616]
R3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver;c:\windows\system32\DRIVERS\PcaSp60.sys [2010-09-07 28672]
R3 Sony PC Companion;Sony PC Companion;c:\program files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;WatAdminSvc;c:\windows\system32\Wat\WatAdminSvc.exe [2010-11-01 1343400]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S0 AVGIDSHX;AVGIDSHX;c:\windows\system32\DRIVERS\avgidshx.sys [2013-09-02 145720]
S0 Avglogx;AVG Logging Driver;c:\windows\system32\DRIVERS\avglogx.sys [2013-09-02 223032]
S0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys [2013-09-08 27448]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-11-03 691696]
S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [2010-03-01 18472]
S1 Avgdiskx;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiskx.sys [2013-08-01 120120]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6x.sys [2012-09-04 50296]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdriverx.sys [2013-09-02 209208]
S1 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\avgidsshimx.sys [2013-09-10 22840]
S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx86.sys [2013-09-02 176952]
S1 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys [2013-08-01 193848]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-10-02 37664]
S2 {329F96B6-DF1E-4328-BFDA-39EA953C1312};Power Control [2011/11/20 18:20];c:\program files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl [2011-08-25 12:06 77296]
S2 avgfws;AVG Firewall;c:\program files\AVG\AVG2014\avgfws.exe [2013-09-22 1358944]
S2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2014\avgwdsvc.exe [2013-09-22 301152]
S2 CLHNServiceForPowerDVD;CLHNServiceForPowerDVD;c:\program files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [2011-08-24 83240]
S2 CyberLink PowerDVD 11.0 Monitor Service;CyberLink PowerDVD 11.0 Monitor Service;c:\program files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [2011-08-26 75048]
S2 CyberLink PowerDVD 11.0 Service;CyberLink PowerDVD 11.0 Service;c:\program files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [2011-08-26 292136]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [2013-10-01 1612112]
S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-08-26 375056]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S2 ntk_PowerDVD;ntk_PowerDVD;c:\program files\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD.sys [2011-08-24 71664]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-08-27 14573856]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-09-11 414496]
S2 TeamViewer8;TeamViewer 8;c:\program files\TeamViewer\Version8\TeamViewer_Service.exe [2012-12-14 3467768]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 22856]
S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2009-10-26 58240]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2009-10-26 136704]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad32v.sys [2013-08-20 33568]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-11-27 233472]
S3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\DRIVERS\seehcri.sys [2011-01-19 27632]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
HPService REG_MULTI_SZ HPSLPSVC
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2010-01-22 10:06 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-10-15 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-05 17:00]
.
2013-10-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-04-12 15:38]
.
2013-10-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-04-12 15:38]
.
2013-10-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000Core.job
- c:\users\Master Tycun\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-04 15:05]
.
2013-10-15 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000UA.job
- c:\users\Master Tycun\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-04 15:05]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\Master Tycun\AppData\Roaming\Mozilla\Firefox\Profiles\9wckfis8.default-1351625711327\
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q=
FF - ExtSQL: !HIDDEN! 2012-10-09 15:43; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
HKLM-Run-netset - c:\windows\System32\netset.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\GarenaPEngine]
"ImagePath"="\??\c:\users\MASTER~1\AppData\Local\Temp\WOA345D.tmp"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\{329F96B6-DF1E-4328-BFDA-39EA953C1312}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(964)
c:\program files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
.
Celkový čas: 2013-10-15 15:39:32
ComboFix-quarantined-files.txt 2013-10-15 13:39
.
Před spuštěním: 969 391 853 568 bytes free
Po spuštění: 973 144 563 712 bytes free
.
- - End Of File - - 0865B56E7888144EF8A66AEC415FD748
A36C5E4F47E84449FF07ED3517B43A31
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Odinstaluj:
AVG Secure Search
GarenaPEngine
GameMon
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
http://files.avast.com/files/rootkit-scanner/aswmbr.exe
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
AVG Secure Search
GarenaPEngine
GameMon
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Kód: Vybrat vše
ClearJavaCache::
KillAll::
File::
c:\windows\inf\msmtqvnn.vbe
c:\users\MASTER~1\AppData\Local\Temp\WOA345D.tmp
c:\program files\Garena\safedrv.sys
c:\windows\system32\GameMon.des
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000UA.job
Folder::
c:\program files\Skype\Updater
c:\program files\Google\Update
c:\users\Master Tycun\AppData\Local\Google\Update
Driver::
SkypeUpdate
GarenaPEngine
GGSAFERDriver
npggsvc
Registry::
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msmtqvnnSrv]
[-HKEY_LOCAL_MACHINE\system\ControlSet001\services\GarenaPEngine]
[-HKEY_LOCAL_MACHINE\system\ControlSet001\services\npggsvc]
DDS::
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
RegLock::
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
http://files.avast.com/files/rootkit-scanner/aswmbr.exe
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
ComboFix 13-10-15.02 - Master Tycun 16.10.2013 14:22:10.2.4 - x86
Microsoft Windows 7 Home Basic 6.1.7601.1.1250.420.1033.18.3579.1970 [GMT 2:00]
Spuštěný z: c:\users\Master Tycun\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Master Tycun\Desktop\CFScript.txt
AV: AVG Internet Security 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2014 *Enabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\program files\Garena\safedrv.sys"
"c:\users\MASTER~1\AppData\Local\Temp\WOA345D.tmp"
"c:\windows\inf\msmtqvnn.vbe"
"c:\windows\system32\GameMon.des"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000Core.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000UA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Google\Update
c:\program files\Google\Update\1.3.21.165\GoogleCrashHandler.exe
c:\program files\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
c:\program files\Google\Update\1.3.21.165\GoogleUpdate.exe
c:\program files\Google\Update\1.3.21.165\GoogleUpdateBroker.exe
c:\program files\Google\Update\1.3.21.165\GoogleUpdateHelper.msi
c:\program files\Google\Update\1.3.21.165\GoogleUpdateOnDemand.exe
c:\program files\Google\Update\1.3.21.165\GoogleUpdateSetup.exe
c:\program files\Google\Update\1.3.21.165\goopdate.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_am.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ar.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_bg.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_bn.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ca.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_cs.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_da.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_de.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_el.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_en-GB.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_en.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_es-419.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_es.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_et.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_fa.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_fi.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_fil.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_fr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_gu.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_hi.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_hr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_hu.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_id.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_is.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_it.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_iw.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ja.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_kn.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ko.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_lt.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_lv.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ml.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_mr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ms.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_nl.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_no.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_pl.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_pt-BR.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_pt-PT.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ro.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ru.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sk.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sl.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sv.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sw.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ta.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_te.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_th.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_tr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_uk.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ur.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_vi.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_zh-CN.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_zh-TW.dll
c:\program files\Google\Update\1.3.21.165\npGoogleUpdate3.dll
c:\program files\Google\Update\1.3.21.165\psmachine.dll
c:\program files\Google\Update\1.3.21.165\psuser.dll
c:\program files\Google\Update\Download\{25CD8595-9B7C-4FB2-8C5E-AADF8CAF8BB0}\GoogleUpdateSetup.exe
c:\program files\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.165\GoogleUpdateSetup.exe
c:\program files\Google\Update\Download\{74AF07D8-FB8F-4D51-8AC7-927721D56EBB}\7.1.1.1888\GoogleEarth-Win-Bundle-7.1.1.1888.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\program files\Skype\Updater
c:\program files\Skype\Updater\Updater.dll
c:\program files\Skype\Updater\Updater.exe
c:\users\Master Tycun\AppData\Local\Google\Update
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleCrashHandler.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdate.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdateBroker.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdateHelper.msi
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdateOnDemand.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdateSetup.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdate.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_am.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ar.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_bg.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_bn.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ca.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_cs.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_da.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_de.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_el.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_en-GB.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_en.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_es-419.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_es.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_et.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_fa.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_fi.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_fil.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_fr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_gu.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_hi.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_hr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_hu.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_id.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_is.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_it.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_iw.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ja.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_kn.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ko.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_lt.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_lv.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ml.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_mr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ms.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_nl.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_no.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_pl.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_pt-BR.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_pt-PT.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ro.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ru.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sk.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sl.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sv.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sw.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ta.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_te.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_th.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_tr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_uk.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ur.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_vi.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_zh-CN.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_zh-TW.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\psmachine.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\psuser.dll
c:\users\Master Tycun\AppData\Local\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.165\GoogleUpdateSetup.exe
c:\users\Master Tycun\AppData\Local\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\30.0.1599.101\30.0.1599.101_30.0.1599.69_chrome_updater.exe
c:\users\Master Tycun\AppData\Local\Google\Update\GoogleUpdate.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_GARENAPENGINE
-------\Legacy_GGSAFERDRIVER
-------\Service_GarenaPEngine
-------\Service_GGSAFERDriver
-------\Service_npggsvc
-------\Service_SkypeUpdate
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-09-16 do 2013-10-16 )))))))))))))))))))))))))))))))
.
.
2013-10-16 12:36 . 2013-10-16 12:36 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-10-16 12:36 . 2013-10-16 12:36 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-10-15 17:08 . 2013-10-15 17:08 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\JAM Software
2013-10-15 17:08 . 2013-10-15 17:08 -------- d-----w- c:\program files\JAM Software
2013-10-11 13:19 . 2013-07-04 11:50 530432 ----a-w- c:\windows\system32\comctl32.dll
2013-10-11 13:18 . 2013-07-03 04:02 36352 ----a-w- c:\windows\system32\drivers\usbscan.sys
2013-10-11 13:18 . 2013-07-03 03:36 55808 ----a-w- c:\windows\system32\drivers\hidclass.sys
2013-10-11 13:18 . 2013-07-03 03:36 25728 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-10-11 13:18 . 2013-08-01 11:03 729024 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-10-11 13:17 . 2013-07-20 10:33 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-11 13:17 . 2013-06-06 03:01 295424 ----a-w- c:\windows\system32\atmfd.dll
2013-10-11 13:17 . 2013-06-06 04:52 26112 ----a-w- c:\windows\system32\lpk.dll
2013-10-11 13:17 . 2013-06-06 04:51 70656 ----a-w- c:\windows\system32\fontsub.dll
2013-10-11 13:17 . 2013-06-06 04:50 10240 ----a-w- c:\windows\system32\dciman32.dll
2013-10-11 13:17 . 2013-06-06 03:01 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-10-11 13:17 . 2013-08-28 01:04 2348544 ----a-w- c:\windows\system32\win32k.sys
2013-10-11 13:06 . 2013-07-12 10:07 80896 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
2013-10-11 13:06 . 2013-07-12 10:07 86016 ----a-w- c:\windows\system32\drivers\usbcir.sys
2013-10-11 12:47 . 2013-10-11 12:47 -------- d-----w- c:\windows\ERUNT
2013-10-11 12:43 . 2013-06-25 22:56 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-10-11 12:43 . 2012-11-28 22:57 9728 ----a-w- c:\windows\system32\Wdfres.dll
2013-10-11 12:43 . 2012-11-28 22:57 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2013-10-10 13:20 . 2013-10-11 12:23 -------- d-----w- C:\AdwCleaner
2013-10-09 16:25 . 2013-10-09 16:25 -------- d-----w- c:\users\Master Tycun\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me
2013-10-09 16:22 . 2013-10-09 16:23 -------- d-----w- c:\program files\OCCTPT
2013-10-09 14:11 . 2013-10-09 14:11 17226632 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe
2013-10-09 12:01 . 2013-10-09 12:01 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\AVG2014
2013-10-09 11:58 . 2013-10-09 11:58 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\TuneUp Software
2013-10-09 11:54 . 2013-10-09 12:00 -------- d-----w- c:\programdata\AVG2014
2013-10-09 11:52 . 2013-10-09 14:02 -------- d-----w- c:\users\Master Tycun\AppData\Local\Avg2014
2013-10-09 11:52 . 2013-10-09 11:52 -------- d-----w- c:\users\Master Tycun\AppData\Local\MFAData
2013-10-04 11:42 . 2013-10-04 11:42 -------- d-----w- c:\users\Master Tycun\AppData\Local\LogMeIn
2013-10-04 11:42 . 2013-10-04 11:42 -------- d-----w- c:\programdata\LogMeIn
2013-10-03 12:29 . 2013-10-03 12:29 -------- d-----w- c:\program files\LogMeIn Hamachi
2013-09-24 16:07 . 2013-10-16 11:53 -------- d-----r- c:\users\Master Tycun\Dropbox
2013-09-24 16:04 . 2013-10-16 11:54 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\Dropbox
2013-09-20 11:44 . 2013-09-20 11:44 -------- d-----w- c:\program files\AGEIA Technologies
2013-09-16 16:16 . 2013-09-16 16:16 -------- d-----w- c:\program files\Phyxion.net
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-09 17:00 . 2012-04-05 10:12 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-10-09 17:00 . 2011-10-15 10:32 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-02 14:59 . 2012-09-04 12:44 37664 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-09-16 20:06 . 2013-01-30 17:20 1060832 ----a-w- c:\programdata\Microsoft\WDExpress\11.0\1033\ResourceCache.dll
2013-09-16 20:06 . 2013-09-16 11:39 1085408 ----a-w- c:\programdata\Microsoft\WDExpress\11.0\1029\ResourceCache.dll
2013-09-12 08:51 . 2013-02-25 22:22 1222824 ----a-w- c:\windows\system32\nvumdshim.dll
2013-09-12 08:51 . 2013-02-25 22:22 2630304 ----a-w- c:\windows\system32\nvapi.dll
2013-09-12 08:51 . 2013-02-25 22:22 13628208 ----a-w- c:\windows\system32\nvwgf2um.dll
2013-09-12 08:51 . 2013-02-25 22:22 12947360 ----a-w- c:\windows\system32\nvd3dum.dll
2013-09-12 06:28 . 2010-06-13 23:09 4265760 ----a-w- c:\windows\system32\nvcpl.dll
2013-09-12 06:28 . 2010-06-13 23:09 3006240 ----a-w- c:\windows\system32\nvsvc.dll
2013-09-12 06:28 . 2010-06-13 23:09 662816 ----a-w- c:\windows\system32\nvvsvc.exe
2013-09-12 06:28 . 2010-06-13 23:09 62752 ----a-w- c:\windows\system32\nvshext.dll
2013-09-12 06:28 . 2010-06-13 23:09 209184 ----a-w- c:\windows\system32\nvmctray.dll
2013-09-11 23:17 . 2013-09-11 23:17 571168 ----a-w- c:\windows\system32\nvStreaming.exe
2013-09-10 20:11 . 2013-09-10 20:11 22840 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
2013-09-08 20:12 . 2013-09-08 20:12 27448 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2013-09-02 08:39 . 2013-09-02 08:39 176952 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2013-09-02 08:28 . 2013-09-02 08:28 145720 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2013-09-02 08:28 . 2013-09-02 08:28 209208 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2013-09-02 08:28 . 2013-09-02 08:28 223032 ----a-w- c:\windows\system32\drivers\avglogx.sys
2013-08-20 20:54 . 2013-08-20 20:54 102200 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2013-08-20 13:33 . 2013-09-07 15:31 33568 ----a-w- c:\windows\system32\drivers\nvvad32v.sys
2013-08-20 13:32 . 2013-09-07 15:31 28448 ----a-w- c:\windows\system32\nvaudcap32v.dll
2013-08-04 16:21 . 2010-11-06 09:37 139832 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2013-08-04 16:21 . 2010-11-24 21:41 281768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2013-08-04 16:21 . 2010-11-06 09:37 281768 ----a-w- c:\windows\system32\PnkBstrB.exe
2013-08-04 16:20 . 2010-11-06 09:37 271200 ----a-w- c:\windows\system32\PnkBstrB.ex0
2013-08-02 01:50 . 2013-09-12 12:53 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 01:49 . 2013-09-12 12:53 293376 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 01:48 . 2013-09-12 12:53 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-08-02 00:52 . 2013-09-12 12:53 271360 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:43 . 2013-09-12 12:53 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-08-01 14:08 . 2013-08-01 14:08 193848 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2013-08-01 14:06 . 2013-08-01 14:06 120120 ----a-w- c:\windows\system32\drivers\avgdiskx.sys
2013-07-25 08:57 . 2013-08-14 11:14 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-19 01:41 . 2013-08-14 11:14 2048 ----a-w- c:\windows\system32\tzres.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OscarEditor"="c:\program files\Anti-Vibrate Oscar Editor\OscarEditor.exe" [2009-12-22 2647040]
"ICQ"="c:\program files\ICQ7.5\ICQ.exe" [2011-08-01 124480]
"Steam"="c:\program files\Steam\steam.exe" [2013-10-09 1813928]
"Sony PC Companion"="c:\program files\Sony\Sony PC Companion\PCCompanion.exe" [2013-05-29 449248]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-06-21 19875432]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-01-19 8452640]
"NUSB3MON"="c:\program files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2009-10-21 106496]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-12-15 103720]
"UCam_Menu"="c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" [2009-02-17 218408]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2008-08-14 611712]
"RemoteControl11"="c:\program files\CyberLink\PowerDVD11\PDVD11Serv.exe" [2011-08-24 230696]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2011-07-11 74752]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"Nvtmru"="c:\program files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-08-27 1028896]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2013-10-01 2345296]
"AVG_UI"="c:\program files\AVG\AVG2014\avgui.exe" [2013-09-15 4851760]
.
c:\users\Master Tycun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2013-10-10 29768376]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Backup Manager.lnk - c:\program files\BackupManager\BkupMgr.exe [2010-11-1 3427488]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2009-5-21 275768]
MBCameraMonitor.lnk - c:\program files\PIXELA\Everio MediaBrowser\MBCameraMonitor.exe [2013-8-11 541976]
Rainmeter.lnk - c:\program files\Rainmeter\Rainmeter.exe [2012-1-8 105160]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2010-04-01 09:16 357696 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2010-01-22 10:08 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
2008-11-14 12:35 305064 ----a-r- c:\program files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe
.
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [2013-10-01 1612112]
R2 vToolbarUpdater17.0.12;vToolbarUpdater17.0.12;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\17.0.12\ToolbarUpdater.exe [x]
R3 dump_wmimmc;dump_wmimmc;c:\program files\Games-Masters.com\CABAL Online (Europe)\GameGuard\dump_wmimmc.sys [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2013-01-18 12400]
R3 LgBttPort;LGE Bluetooth TransPort;c:\windows\system32\DRIVERS\lgbtport.sys [x]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\DRIVERS\lgbtbus.sys [x]
R3 LGVMODEM;LGE Virtual Modem;c:\windows\system32\DRIVERS\lgvmodem.sys [x]
R3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver;c:\windows\system32\DRIVERS\PcaSp60.sys [2010-09-07 28672]
R3 Sony PC Companion;Sony PC Companion;c:\program files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;WatAdminSvc;c:\windows\system32\Wat\WatAdminSvc.exe [2010-11-01 1343400]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S0 AVGIDSHX;AVGIDSHX;c:\windows\system32\DRIVERS\avgidshx.sys [2013-09-02 145720]
S0 Avglogx;AVG Logging Driver;c:\windows\system32\DRIVERS\avglogx.sys [2013-09-02 223032]
S0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys [2013-09-08 27448]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-11-03 691696]
S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [2010-03-01 18472]
S1 Avgdiskx;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiskx.sys [2013-08-01 120120]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6x.sys [2012-09-04 50296]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdriverx.sys [2013-09-02 209208]
S1 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\avgidsshimx.sys [2013-09-10 22840]
S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx86.sys [2013-09-02 176952]
S1 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys [2013-08-01 193848]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-10-02 37664]
S2 {329F96B6-DF1E-4328-BFDA-39EA953C1312};Power Control [2011/11/20 18:20];c:\program files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl [2011-08-25 12:06 77296]
S2 avgfws;AVG Firewall;c:\program files\AVG\AVG2014\avgfws.exe [2013-09-22 1358944]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2014\avgidsagent.exe [2013-09-03 3538480]
S2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2014\avgwdsvc.exe [2013-09-22 301152]
S2 CLHNServiceForPowerDVD;CLHNServiceForPowerDVD;c:\program files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [2011-08-24 83240]
S2 CyberLink PowerDVD 11.0 Monitor Service;CyberLink PowerDVD 11.0 Monitor Service;c:\program files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [2011-08-26 75048]
S2 CyberLink PowerDVD 11.0 Service;CyberLink PowerDVD 11.0 Service;c:\program files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [2011-08-26 292136]
S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-08-26 375056]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S2 ntk_PowerDVD;ntk_PowerDVD;c:\program files\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD.sys [2011-08-24 71664]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-08-27 14573856]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-09-11 414496]
S2 TeamViewer8;TeamViewer 8;c:\program files\TeamViewer\Version8\TeamViewer_Service.exe [2012-12-14 3467768]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 22856]
S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2009-10-26 58240]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2009-10-26 136704]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad32v.sys [2013-08-20 33568]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-11-27 233472]
S3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\DRIVERS\seehcri.sys [2011-01-19 27632]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
HPService REG_MULTI_SZ HPSLPSVC
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2010-01-22 10:06 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-10-16 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-05 17:00]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
FF - ProfilePath - c:\users\Master Tycun\AppData\Roaming\Mozilla\Firefox\Profiles\9wckfis8.default-1351625711327\
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q=
FF - ExtSQL: !HIDDEN! 2012-10-09 15:43; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\{329F96B6-DF1E-4328-BFDA-39EA953C1312}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(956)
c:\program files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\progra~1\AVG\AVG2014\avgrsx.exe
c:\program files\AVG\AVG2014\avgcsrvx.exe
c:\windows\system32\nvvsvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\windows\system32\taskhost.exe
c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\AVG\AVG2014\avgnsx.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\conhost.exe
c:\program files\AVG\AVG2014\avgcsrvx.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\windows\System32\rundll32.exe
c:\windows\system32\conhost.exe
c:\windows\system32\taskhost.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Celkový čas: 2013-10-16 15:02:49 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-10-16 13:02
ComboFix2.txt 2013-10-15 13:39
.
Před spuštěním: 972 736 380 928 bytes free
Po spuštění: 972 247 085 056 bytes free
.
- - End Of File - - 7D7E261697D83CD51241E1BCB472A134
A36C5E4F47E84449FF07ED3517B43A31
Microsoft Windows 7 Home Basic 6.1.7601.1.1250.420.1033.18.3579.1970 [GMT 2:00]
Spuštěný z: c:\users\Master Tycun\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Master Tycun\Desktop\CFScript.txt
AV: AVG Internet Security 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2014 *Enabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\program files\Garena\safedrv.sys"
"c:\users\MASTER~1\AppData\Local\Temp\WOA345D.tmp"
"c:\windows\inf\msmtqvnn.vbe"
"c:\windows\system32\GameMon.des"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000Core.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2061295098-4083482707-2904958716-1000UA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Google\Update
c:\program files\Google\Update\1.3.21.165\GoogleCrashHandler.exe
c:\program files\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
c:\program files\Google\Update\1.3.21.165\GoogleUpdate.exe
c:\program files\Google\Update\1.3.21.165\GoogleUpdateBroker.exe
c:\program files\Google\Update\1.3.21.165\GoogleUpdateHelper.msi
c:\program files\Google\Update\1.3.21.165\GoogleUpdateOnDemand.exe
c:\program files\Google\Update\1.3.21.165\GoogleUpdateSetup.exe
c:\program files\Google\Update\1.3.21.165\goopdate.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_am.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ar.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_bg.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_bn.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ca.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_cs.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_da.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_de.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_el.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_en-GB.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_en.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_es-419.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_es.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_et.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_fa.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_fi.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_fil.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_fr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_gu.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_hi.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_hr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_hu.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_id.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_is.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_it.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_iw.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ja.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_kn.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ko.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_lt.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_lv.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ml.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_mr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ms.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_nl.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_no.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_pl.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_pt-BR.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_pt-PT.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ro.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ru.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sk.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sl.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sv.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_sw.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ta.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_te.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_th.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_tr.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_uk.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_ur.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_vi.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_zh-CN.dll
c:\program files\Google\Update\1.3.21.165\goopdateres_zh-TW.dll
c:\program files\Google\Update\1.3.21.165\npGoogleUpdate3.dll
c:\program files\Google\Update\1.3.21.165\psmachine.dll
c:\program files\Google\Update\1.3.21.165\psuser.dll
c:\program files\Google\Update\Download\{25CD8595-9B7C-4FB2-8C5E-AADF8CAF8BB0}\GoogleUpdateSetup.exe
c:\program files\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.165\GoogleUpdateSetup.exe
c:\program files\Google\Update\Download\{74AF07D8-FB8F-4D51-8AC7-927721D56EBB}\7.1.1.1888\GoogleEarth-Win-Bundle-7.1.1.1888.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\program files\Skype\Updater
c:\program files\Skype\Updater\Updater.dll
c:\program files\Skype\Updater\Updater.exe
c:\users\Master Tycun\AppData\Local\Google\Update
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleCrashHandler.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdate.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdateBroker.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdateHelper.msi
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdateOnDemand.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\GoogleUpdateSetup.exe
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdate.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_am.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ar.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_bg.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_bn.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ca.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_cs.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_da.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_de.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_el.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_en-GB.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_en.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_es-419.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_es.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_et.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_fa.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_fi.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_fil.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_fr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_gu.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_hi.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_hr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_hu.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_id.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_is.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_it.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_iw.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ja.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_kn.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ko.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_lt.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_lv.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ml.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_mr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ms.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_nl.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_no.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_pl.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_pt-BR.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_pt-PT.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ro.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ru.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sk.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sl.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sv.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_sw.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ta.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_te.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_th.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_tr.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_uk.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_ur.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_vi.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_zh-CN.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\goopdateres_zh-TW.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\psmachine.dll
c:\users\Master Tycun\AppData\Local\Google\Update\1.3.21.165\psuser.dll
c:\users\Master Tycun\AppData\Local\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.165\GoogleUpdateSetup.exe
c:\users\Master Tycun\AppData\Local\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\30.0.1599.101\30.0.1599.101_30.0.1599.69_chrome_updater.exe
c:\users\Master Tycun\AppData\Local\Google\Update\GoogleUpdate.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_GARENAPENGINE
-------\Legacy_GGSAFERDRIVER
-------\Service_GarenaPEngine
-------\Service_GGSAFERDriver
-------\Service_npggsvc
-------\Service_SkypeUpdate
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-09-16 do 2013-10-16 )))))))))))))))))))))))))))))))
.
.
2013-10-16 12:36 . 2013-10-16 12:36 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-10-16 12:36 . 2013-10-16 12:36 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-10-15 17:08 . 2013-10-15 17:08 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\JAM Software
2013-10-15 17:08 . 2013-10-15 17:08 -------- d-----w- c:\program files\JAM Software
2013-10-11 13:19 . 2013-07-04 11:50 530432 ----a-w- c:\windows\system32\comctl32.dll
2013-10-11 13:18 . 2013-07-03 04:02 36352 ----a-w- c:\windows\system32\drivers\usbscan.sys
2013-10-11 13:18 . 2013-07-03 03:36 55808 ----a-w- c:\windows\system32\drivers\hidclass.sys
2013-10-11 13:18 . 2013-07-03 03:36 25728 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-10-11 13:18 . 2013-08-01 11:03 729024 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-10-11 13:17 . 2013-07-20 10:33 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-11 13:17 . 2013-06-06 03:01 295424 ----a-w- c:\windows\system32\atmfd.dll
2013-10-11 13:17 . 2013-06-06 04:52 26112 ----a-w- c:\windows\system32\lpk.dll
2013-10-11 13:17 . 2013-06-06 04:51 70656 ----a-w- c:\windows\system32\fontsub.dll
2013-10-11 13:17 . 2013-06-06 04:50 10240 ----a-w- c:\windows\system32\dciman32.dll
2013-10-11 13:17 . 2013-06-06 03:01 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-10-11 13:17 . 2013-08-28 01:04 2348544 ----a-w- c:\windows\system32\win32k.sys
2013-10-11 13:06 . 2013-07-12 10:07 80896 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
2013-10-11 13:06 . 2013-07-12 10:07 86016 ----a-w- c:\windows\system32\drivers\usbcir.sys
2013-10-11 12:47 . 2013-10-11 12:47 -------- d-----w- c:\windows\ERUNT
2013-10-11 12:43 . 2013-06-25 22:56 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-10-11 12:43 . 2012-11-28 22:57 9728 ----a-w- c:\windows\system32\Wdfres.dll
2013-10-11 12:43 . 2012-11-28 22:57 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2013-10-10 13:20 . 2013-10-11 12:23 -------- d-----w- C:\AdwCleaner
2013-10-09 16:25 . 2013-10-09 16:25 -------- d-----w- c:\users\Master Tycun\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me
2013-10-09 16:22 . 2013-10-09 16:23 -------- d-----w- c:\program files\OCCTPT
2013-10-09 14:11 . 2013-10-09 14:11 17226632 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe
2013-10-09 12:01 . 2013-10-09 12:01 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\AVG2014
2013-10-09 11:58 . 2013-10-09 11:58 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\TuneUp Software
2013-10-09 11:54 . 2013-10-09 12:00 -------- d-----w- c:\programdata\AVG2014
2013-10-09 11:52 . 2013-10-09 14:02 -------- d-----w- c:\users\Master Tycun\AppData\Local\Avg2014
2013-10-09 11:52 . 2013-10-09 11:52 -------- d-----w- c:\users\Master Tycun\AppData\Local\MFAData
2013-10-04 11:42 . 2013-10-04 11:42 -------- d-----w- c:\users\Master Tycun\AppData\Local\LogMeIn
2013-10-04 11:42 . 2013-10-04 11:42 -------- d-----w- c:\programdata\LogMeIn
2013-10-03 12:29 . 2013-10-03 12:29 -------- d-----w- c:\program files\LogMeIn Hamachi
2013-09-24 16:07 . 2013-10-16 11:53 -------- d-----r- c:\users\Master Tycun\Dropbox
2013-09-24 16:04 . 2013-10-16 11:54 -------- d-----w- c:\users\Master Tycun\AppData\Roaming\Dropbox
2013-09-20 11:44 . 2013-09-20 11:44 -------- d-----w- c:\program files\AGEIA Technologies
2013-09-16 16:16 . 2013-09-16 16:16 -------- d-----w- c:\program files\Phyxion.net
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-09 17:00 . 2012-04-05 10:12 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-10-09 17:00 . 2011-10-15 10:32 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-02 14:59 . 2012-09-04 12:44 37664 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-09-16 20:06 . 2013-01-30 17:20 1060832 ----a-w- c:\programdata\Microsoft\WDExpress\11.0\1033\ResourceCache.dll
2013-09-16 20:06 . 2013-09-16 11:39 1085408 ----a-w- c:\programdata\Microsoft\WDExpress\11.0\1029\ResourceCache.dll
2013-09-12 08:51 . 2013-02-25 22:22 1222824 ----a-w- c:\windows\system32\nvumdshim.dll
2013-09-12 08:51 . 2013-02-25 22:22 2630304 ----a-w- c:\windows\system32\nvapi.dll
2013-09-12 08:51 . 2013-02-25 22:22 13628208 ----a-w- c:\windows\system32\nvwgf2um.dll
2013-09-12 08:51 . 2013-02-25 22:22 12947360 ----a-w- c:\windows\system32\nvd3dum.dll
2013-09-12 06:28 . 2010-06-13 23:09 4265760 ----a-w- c:\windows\system32\nvcpl.dll
2013-09-12 06:28 . 2010-06-13 23:09 3006240 ----a-w- c:\windows\system32\nvsvc.dll
2013-09-12 06:28 . 2010-06-13 23:09 662816 ----a-w- c:\windows\system32\nvvsvc.exe
2013-09-12 06:28 . 2010-06-13 23:09 62752 ----a-w- c:\windows\system32\nvshext.dll
2013-09-12 06:28 . 2010-06-13 23:09 209184 ----a-w- c:\windows\system32\nvmctray.dll
2013-09-11 23:17 . 2013-09-11 23:17 571168 ----a-w- c:\windows\system32\nvStreaming.exe
2013-09-10 20:11 . 2013-09-10 20:11 22840 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
2013-09-08 20:12 . 2013-09-08 20:12 27448 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2013-09-02 08:39 . 2013-09-02 08:39 176952 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2013-09-02 08:28 . 2013-09-02 08:28 145720 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2013-09-02 08:28 . 2013-09-02 08:28 209208 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2013-09-02 08:28 . 2013-09-02 08:28 223032 ----a-w- c:\windows\system32\drivers\avglogx.sys
2013-08-20 20:54 . 2013-08-20 20:54 102200 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2013-08-20 13:33 . 2013-09-07 15:31 33568 ----a-w- c:\windows\system32\drivers\nvvad32v.sys
2013-08-20 13:32 . 2013-09-07 15:31 28448 ----a-w- c:\windows\system32\nvaudcap32v.dll
2013-08-04 16:21 . 2010-11-06 09:37 139832 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2013-08-04 16:21 . 2010-11-24 21:41 281768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2013-08-04 16:21 . 2010-11-06 09:37 281768 ----a-w- c:\windows\system32\PnkBstrB.exe
2013-08-04 16:20 . 2010-11-06 09:37 271200 ----a-w- c:\windows\system32\PnkBstrB.ex0
2013-08-02 01:50 . 2013-09-12 12:53 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 01:49 . 2013-09-12 12:53 293376 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 01:48 . 2013-09-12 12:53 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-08-02 01:48 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-08-02 00:52 . 2013-09-12 12:53 271360 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:43 . 2013-09-12 12:53 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43 . 2013-09-12 12:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-08-01 14:08 . 2013-08-01 14:08 193848 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2013-08-01 14:06 . 2013-08-01 14:06 120120 ----a-w- c:\windows\system32\drivers\avgdiskx.sys
2013-07-25 08:57 . 2013-08-14 11:14 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-19 01:41 . 2013-08-14 11:14 2048 ----a-w- c:\windows\system32\tzres.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OscarEditor"="c:\program files\Anti-Vibrate Oscar Editor\OscarEditor.exe" [2009-12-22 2647040]
"ICQ"="c:\program files\ICQ7.5\ICQ.exe" [2011-08-01 124480]
"Steam"="c:\program files\Steam\steam.exe" [2013-10-09 1813928]
"Sony PC Companion"="c:\program files\Sony\Sony PC Companion\PCCompanion.exe" [2013-05-29 449248]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-06-21 19875432]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-01-19 8452640]
"NUSB3MON"="c:\program files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2009-10-21 106496]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-12-15 103720]
"UCam_Menu"="c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" [2009-02-17 218408]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2008-08-14 611712]
"RemoteControl11"="c:\program files\CyberLink\PowerDVD11\PDVD11Serv.exe" [2011-08-24 230696]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2011-07-11 74752]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"Nvtmru"="c:\program files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-08-27 1028896]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2013-10-01 2345296]
"AVG_UI"="c:\program files\AVG\AVG2014\avgui.exe" [2013-09-15 4851760]
.
c:\users\Master Tycun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Master Tycun\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2013-10-10 29768376]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Backup Manager.lnk - c:\program files\BackupManager\BkupMgr.exe [2010-11-1 3427488]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2009-5-21 275768]
MBCameraMonitor.lnk - c:\program files\PIXELA\Everio MediaBrowser\MBCameraMonitor.exe [2013-8-11 541976]
Rainmeter.lnk - c:\program files\Rainmeter\Rainmeter.exe [2012-1-8 105160]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2010-04-01 09:16 357696 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2010-01-22 10:08 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
2008-11-14 12:35 305064 ----a-r- c:\program files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe
.
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [2013-10-01 1612112]
R2 vToolbarUpdater17.0.12;vToolbarUpdater17.0.12;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\17.0.12\ToolbarUpdater.exe [x]
R3 dump_wmimmc;dump_wmimmc;c:\program files\Games-Masters.com\CABAL Online (Europe)\GameGuard\dump_wmimmc.sys [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2013-01-18 12400]
R3 LgBttPort;LGE Bluetooth TransPort;c:\windows\system32\DRIVERS\lgbtport.sys [x]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\DRIVERS\lgbtbus.sys [x]
R3 LGVMODEM;LGE Virtual Modem;c:\windows\system32\DRIVERS\lgvmodem.sys [x]
R3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver;c:\windows\system32\DRIVERS\PcaSp60.sys [2010-09-07 28672]
R3 Sony PC Companion;Sony PC Companion;c:\program files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;WatAdminSvc;c:\windows\system32\Wat\WatAdminSvc.exe [2010-11-01 1343400]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S0 AVGIDSHX;AVGIDSHX;c:\windows\system32\DRIVERS\avgidshx.sys [2013-09-02 145720]
S0 Avglogx;AVG Logging Driver;c:\windows\system32\DRIVERS\avglogx.sys [2013-09-02 223032]
S0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys [2013-09-08 27448]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-11-03 691696]
S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [2010-03-01 18472]
S1 Avgdiskx;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiskx.sys [2013-08-01 120120]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6x.sys [2012-09-04 50296]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdriverx.sys [2013-09-02 209208]
S1 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\avgidsshimx.sys [2013-09-10 22840]
S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx86.sys [2013-09-02 176952]
S1 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys [2013-08-01 193848]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-10-02 37664]
S2 {329F96B6-DF1E-4328-BFDA-39EA953C1312};Power Control [2011/11/20 18:20];c:\program files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl [2011-08-25 12:06 77296]
S2 avgfws;AVG Firewall;c:\program files\AVG\AVG2014\avgfws.exe [2013-09-22 1358944]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2014\avgidsagent.exe [2013-09-03 3538480]
S2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2014\avgwdsvc.exe [2013-09-22 301152]
S2 CLHNServiceForPowerDVD;CLHNServiceForPowerDVD;c:\program files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [2011-08-24 83240]
S2 CyberLink PowerDVD 11.0 Monitor Service;CyberLink PowerDVD 11.0 Monitor Service;c:\program files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [2011-08-26 75048]
S2 CyberLink PowerDVD 11.0 Service;CyberLink PowerDVD 11.0 Service;c:\program files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [2011-08-26 292136]
S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-08-26 375056]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S2 ntk_PowerDVD;ntk_PowerDVD;c:\program files\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD.sys [2011-08-24 71664]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-08-27 14573856]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-09-11 414496]
S2 TeamViewer8;TeamViewer 8;c:\program files\TeamViewer\Version8\TeamViewer_Service.exe [2012-12-14 3467768]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 22856]
S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2009-10-26 58240]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2009-10-26 136704]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad32v.sys [2013-08-20 33568]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-11-27 233472]
S3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\DRIVERS\seehcri.sys [2011-01-19 27632]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc SensrSvc
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
HPService REG_MULTI_SZ HPSLPSVC
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2010-01-22 10:06 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-10-16 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-05 17:00]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
FF - ProfilePath - c:\users\Master Tycun\AppData\Roaming\Mozilla\Firefox\Profiles\9wckfis8.default-1351625711327\
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q=
FF - ExtSQL: !HIDDEN! 2012-10-09 15:43; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\{329F96B6-DF1E-4328-BFDA-39EA953C1312}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'lsass.exe'(956)
c:\program files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\progra~1\AVG\AVG2014\avgrsx.exe
c:\program files\AVG\AVG2014\avgcsrvx.exe
c:\windows\system32\nvvsvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\windows\system32\taskhost.exe
c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\AVG\AVG2014\avgnsx.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\conhost.exe
c:\program files\AVG\AVG2014\avgcsrvx.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\windows\System32\rundll32.exe
c:\windows\system32\conhost.exe
c:\windows\system32\taskhost.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Celkový čas: 2013-10-16 15:02:49 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-10-16 13:02
ComboFix2.txt 2013-10-15 13:39
.
Před spuštěním: 972 736 380 928 bytes free
Po spuštění: 972 247 085 056 bytes free
.
- - End Of File - - 7D7E261697D83CD51241E1BCB472A134
A36C5E4F47E84449FF07ED3517B43A31
Re: Prosím o kontrolu logu
aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2013-10-16 15:29:31
-----------------------------
15:29:31.651 OS Version: Windows 6.1.7601 Service Pack 1
15:29:31.651 Number of processors: 4 586 0x1E05
15:29:31.651 ComputerName: DOMÁCÍ_KANCELÁŘ UserName: Master Tycun
15:31:30.162 Initialize success
15:31:44.750 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP5T0L0-6
15:31:44.750 Disk 0 Vendor: SAMSUNG_HD154UI 1AG01118 Size: 1430799MB BusType: 3
15:31:44.765 Disk 0 MBR read successfully
15:31:44.765 Disk 0 MBR scan
15:31:44.765 Disk 0 Windows 7 default MBR code
15:31:44.781 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
15:31:44.797 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 1430697 MB offset 206848
15:31:44.797 Disk 0 scanning sectors +2930274304
15:31:44.859 Disk 0 scanning C:\Windows\system32\drivers
15:32:10.817 Service scanning
15:32:26.901 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
15:32:30.723 Modules scanning
15:32:37.634 Disk 0 trace - called modules:
15:32:37.696 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll >>UNKNOWN [0x861051f8]<<
15:32:38.211 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8702c030]
15:32:38.211 3 CLASSPNP.SYS[8d38359e] -> nt!IofCallDriver -> [0x86eef918]
15:32:38.227 5 ACPI.sys[83baf3d4] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP5T0L0-6[0x86e8a030]
15:32:38.227 \Driver\atapi[0x86e656b0] -> IRP_MJ_CREATE -> 0x861051f8
15:32:38.242 Scan finished successfully
15:33:23.763 Disk 0 MBR has been saved successfully to "C:\Users\Master Tycun\Desktop\MBR.dat"
15:33:23.826 The log file has been saved successfully to "C:\Users\Master Tycun\Desktop\aswMBR.txt"
Run date: 2013-10-16 15:29:31
-----------------------------
15:29:31.651 OS Version: Windows 6.1.7601 Service Pack 1
15:29:31.651 Number of processors: 4 586 0x1E05
15:29:31.651 ComputerName: DOMÁCÍ_KANCELÁŘ UserName: Master Tycun
15:31:30.162 Initialize success
15:31:44.750 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP5T0L0-6
15:31:44.750 Disk 0 Vendor: SAMSUNG_HD154UI 1AG01118 Size: 1430799MB BusType: 3
15:31:44.765 Disk 0 MBR read successfully
15:31:44.765 Disk 0 MBR scan
15:31:44.765 Disk 0 Windows 7 default MBR code
15:31:44.781 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
15:31:44.797 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 1430697 MB offset 206848
15:31:44.797 Disk 0 scanning sectors +2930274304
15:31:44.859 Disk 0 scanning C:\Windows\system32\drivers
15:32:10.817 Service scanning
15:32:26.901 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
15:32:30.723 Modules scanning
15:32:37.634 Disk 0 trace - called modules:
15:32:37.696 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll >>UNKNOWN [0x861051f8]<<
15:32:38.211 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8702c030]
15:32:38.211 3 CLASSPNP.SYS[8d38359e] -> nt!IofCallDriver -> [0x86eef918]
15:32:38.227 5 ACPI.sys[83baf3d4] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP5T0L0-6[0x86e8a030]
15:32:38.227 \Driver\atapi[0x86e656b0] -> IRP_MJ_CREATE -> 0x861051f8
15:32:38.242 Scan finished successfully
15:33:23.763 Disk 0 MBR has been saved successfully to "C:\Users\Master Tycun\Desktop\MBR.dat"
15:33:23.826 The log file has been saved successfully to "C:\Users\Master Tycun\Desktop\aswMBR.txt"
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
====================================================
Vyčisti systém CCleanerem
====================================================
Stáhni si zde DelFix
http://general-changelog-team.fr/fr/dow ... e/9-delfix
ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7 a 8, musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci
Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt
Jak to vypadá s problény?
Start-Spustit a zadej ComboFix /Uninstall
====================================================
Vyčisti systém CCleanerem
====================================================
Stáhni si zde DelFix
http://general-changelog-team.fr/fr/dow ... e/9-delfix
ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7 a 8, musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci
Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt
Jak to vypadá s problény?
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: Prosím o kontrolu logu
# DelFix v10.5 - Logfile created 17/10/2013 at 15:20:18
# Updated 17/10/2013 by Xplode
# Username : Master Tycun - DOMÁCÍ_KANCELÁŘ
# Operating System : Windows 7 Home Basic Service Pack 1 (32 bits)
~ Removing disinfection tools ...
Deleted : C:\Qoobox
Deleted : C:\Combofix
Deleted : C:\AdwCleaner
Deleted : C:\ComboFix.txt
Deleted : C:\TDSSKiller.2.8.16.0_14.10.2013_14.03.47_log.txt
Deleted : C:\Users\Master Tycun\Desktop\aswMBR.txt
Deleted : C:\Users\Master Tycun\Desktop\ComboFix.exe
Deleted : C:\Users\Master Tycun\Downloads\adwcleaner.exe
Deleted : C:\Users\Master Tycun\Downloads\aswmbr.exe
Deleted : C:\Users\Master Tycun\Downloads\hijackthis.exe
Deleted : C:\Users\Master Tycun\Downloads\hijackthis.log
Deleted : C:\Users\Master Tycun\Downloads\RogueKiller.exe
Deleted : C:\Users\Master Tycun\Downloads\TFC.exe
Deleted : C:\Windows\grep.exe
Deleted : C:\Windows\PEV.exe
Deleted : C:\Windows\NIRCMD.exe
Deleted : C:\Windows\MBR.exe
Deleted : C:\Windows\SED.exe
Deleted : C:\Windows\SWREG.exe
Deleted : C:\Windows\SWSC.exe
Deleted : C:\Windows\SWXCACLS.exe
Deleted : C:\Windows\Zip.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\Swearware
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis
Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\combofix.exe
Deleted : HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWMBR
~ Cleaning system restore ...
Deleted : RP #420 [Scheduled Checkpoint | 10/04/2013 18:17:01]
Deleted : RP #421 [Installed AVG 2014 | 10/09/2013 11:54:27]
Deleted : RP #422 [Installed AVG 2014 | 10/09/2013 11:55:11]
Deleted : RP #423 [Removed HiJackThis | 10/09/2013 19:04:09]
Deleted : RP #424 [Windows Update | 10/11/2013 19:58:29]
Deleted : RP #425 [ComboFix created restore point | 10/15/2013 13:19:30]
New restore point created !
########## - EOF - ##########
# Updated 17/10/2013 by Xplode
# Username : Master Tycun - DOMÁCÍ_KANCELÁŘ
# Operating System : Windows 7 Home Basic Service Pack 1 (32 bits)
~ Removing disinfection tools ...
Deleted : C:\Qoobox
Deleted : C:\Combofix
Deleted : C:\AdwCleaner
Deleted : C:\ComboFix.txt
Deleted : C:\TDSSKiller.2.8.16.0_14.10.2013_14.03.47_log.txt
Deleted : C:\Users\Master Tycun\Desktop\aswMBR.txt
Deleted : C:\Users\Master Tycun\Desktop\ComboFix.exe
Deleted : C:\Users\Master Tycun\Downloads\adwcleaner.exe
Deleted : C:\Users\Master Tycun\Downloads\aswmbr.exe
Deleted : C:\Users\Master Tycun\Downloads\hijackthis.exe
Deleted : C:\Users\Master Tycun\Downloads\hijackthis.log
Deleted : C:\Users\Master Tycun\Downloads\RogueKiller.exe
Deleted : C:\Users\Master Tycun\Downloads\TFC.exe
Deleted : C:\Windows\grep.exe
Deleted : C:\Windows\PEV.exe
Deleted : C:\Windows\NIRCMD.exe
Deleted : C:\Windows\MBR.exe
Deleted : C:\Windows\SED.exe
Deleted : C:\Windows\SWREG.exe
Deleted : C:\Windows\SWSC.exe
Deleted : C:\Windows\SWXCACLS.exe
Deleted : C:\Windows\Zip.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\Swearware
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis
Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\combofix.exe
Deleted : HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWMBR
~ Cleaning system restore ...
Deleted : RP #420 [Scheduled Checkpoint | 10/04/2013 18:17:01]
Deleted : RP #421 [Installed AVG 2014 | 10/09/2013 11:54:27]
Deleted : RP #422 [Installed AVG 2014 | 10/09/2013 11:55:11]
Deleted : RP #423 [Removed HiJackThis | 10/09/2013 19:04:09]
Deleted : RP #424 [Windows Update | 10/11/2013 19:58:29]
Deleted : RP #425 [ComboFix created restore point | 10/15/2013 13:19:30]
New restore point created !
########## - EOF - ##########
Re: Prosím o kontrolu logu
Problémy z většiny nepřestaly. Zrychlilo se načítání internetových videí, ale to je tak vše.
Aplikace stále někdy neodpovídají, dlouho se načítají, systém je zasekaný.
Aplikace stále někdy neodpovídají, dlouho se načítají, systém je zasekaný.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Stáhni si Memtest:
Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
Paměti jsou v pořádku
----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Basic Edition SP1 [6.1 Build 7601] (x86)
Date : 2013/10/23 17:18:07
-- Controller Map ----------------------------------------------------------
+ Intel(R) 5 Series/3400 Series Chipset Family 4 port Serial ATA Storage Controller - 3B20 [ATA]
+ ATA Channel 0 (0)
- HL-DT-ST DVDRAM GH22LS50 ATA Device
+ ATA Channel 1 (1)
- SAMSUNG HD154UI ATA Device
+ Intel(R) 5 Series/3400 Series Chipset Family 2 port Serial ATA Storage Controller - 3B26 [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ Standard Dual Channel PCI IDE Controller [ATA]
- ATA Channel 0 (0)
+ ATA Channel 1 (1)
- Marvell 91xx Config Device
+ Standard Dual Channel PCI IDE Controller [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ A6QN8F17 IDE Controller [SCSI]
- TYRCFK R4PYV0XMNW SCSI CdRom Device
-- Disk List ---------------------------------------------------------------
(1) SAMSUNG HD154UI : 1500,3 GB [0/5/0, pd1]
(2) WDC WD5000BEVT-22ZAT0 : 500,1 GB [1/X/X, sa1] (V=1005, P=A102)
----------------------------------------------------------------------------
(1) SAMSUNG HD154UI
----------------------------------------------------------------------------
Model : SAMSUNG HD154UI
Firmware : 1AG01118
Serial Number : S1XWJD1ZA00198
Disk Size : 1500,3 GB (8,4/137,4/1500,3)
Buffer Size : 32767 KB
Queue Depth : 32
# of Sectors : 2930277168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA/ATAPI-7
Minor Version : ATA8-ACS version 3b
Transfer Mode : SATA/300
Power On Hours : 10625 hod.
Power On Count : 1283 krát
Temparature : 37 C (98 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 0000h [OFF]
AAM Level : FE00h [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _51 000000000000 Počet chyb čtení
03 _71 _71 _11 000000002486 Čas na roztočení ploten
04 _99 _99 __0 00000000050C Počet spuštění/zastavení
05 100 100 _10 000000000000 Počet přemapovaných sektorů
07 100 100 _51 000000000000 Počet chybných hledání
08 100 100 _15 000000000000 Čas potřebný na vyhledání
09 _98 _98 __0 000000002981 Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 000000000503 Počet cyklů zapnutí zařízení
0D 100 100 __0 000000000000 Počet pokusů o softvérové opravení chyb při čtení programů z disku
B7 100 100 __0 000000000000 Neznámý
B8 100 100 __0 000000000000 Ukončovacích chyb
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000000 Časový limit příkazu
BE _65 _57 __0 000023120023 Teplota toku vzduchu
C2 _63 _55 __0 000026120025 Teplota
C3 100 100 __0 00000346123C Počet oprav chybného čtení
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 100 100 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 _99 __0 000000000000 Počet chyb při zápisu sektorů
C9 100 100 __0 000000000000 Počet chyb při čtení programů z disku
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 8856 003F 003F 0000 0000 0000
010: 5331 5857 4A44 315A 4130 3938 3938 2020 2020 2020
020: 0003 FFFF 0004 3141 4730 3138 3138 5341 4D53 554E
030: 4720 4844 3135 3455 4920 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 1706 1706 0000 004C 0040
080: 00F8 0052 746B 7F69 4133 BC41 BC41 4123 20FF 009D
090: 009D 0000 FFFE 0000 FE00 0007 0007 006C 86A0 0001
100: 7B30 AEA8 0000 0000 0064 0000 0000 0000 5002 4E90
110: 0425 F127 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 003F 003F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 3AA5
----------------------------------------------------------------------------
(2) WDC WD5000BEVT-22ZAT0
----------------------------------------------------------------------------
Enclosure : Apacer Technology Inc. USB Device (V=1005, P=A102, sa1)
Model : WDC WD5000BEVT-22ZAT0
Firmware : 01.01A01
Serial Number : WD-WX90A69U0800
Disk Size : 500,1 GB (8,4/137,4/500,1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : USB (Serial ATA)
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 23436 hod.
Power On Count : 612 krát
Temparature : 34 C (93 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : 80FEh [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000002 Počet chyb čtení
03 189 178 _21 0000000005F5 Čas na roztočení ploten
04 _89 _89 __0 000000002CFF Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 100 253 __0 000000000000 Počet chybných hledání
09 _68 _68 __0 000000005B8C Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C 100 100 __0 000000000264 Počet cyklů zapnutí zařízení
C0 200 200 __0 000000000263 Počet vypnutí disku
C1 155 155 __0 000000021228 Počet cyklů načítání/vymazání
C2 113 104 __0 000000000022 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 100 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 _51 000000000000 Počet chyb při zápisu sektorů
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 5758 4136 4136 3955 3038 3030
020: 0000 4000 0032 3031 2E30 3031 3031 5744 4320 5744
030: 3530 3030 4245 5654 2D32 4154 4154 3020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0100
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 1F06 1F06 0000 004C 0040
080: 01FE 0000 746B 7F09 6163 BC09 BC09 6163 107F 0043
090: 0043 0080 FFFE 0000 80FE 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 0000 0000 5001 4EE2
110: ADAE A065 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0021 0000
130: 0000 0000 0000 16B7 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 303F 303F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 C1A5
----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Basic Edition SP1 [6.1 Build 7601] (x86)
Date : 2013/10/23 17:18:07
-- Controller Map ----------------------------------------------------------
+ Intel(R) 5 Series/3400 Series Chipset Family 4 port Serial ATA Storage Controller - 3B20 [ATA]
+ ATA Channel 0 (0)
- HL-DT-ST DVDRAM GH22LS50 ATA Device
+ ATA Channel 1 (1)
- SAMSUNG HD154UI ATA Device
+ Intel(R) 5 Series/3400 Series Chipset Family 2 port Serial ATA Storage Controller - 3B26 [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ Standard Dual Channel PCI IDE Controller [ATA]
- ATA Channel 0 (0)
+ ATA Channel 1 (1)
- Marvell 91xx Config Device
+ Standard Dual Channel PCI IDE Controller [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ A6QN8F17 IDE Controller [SCSI]
- TYRCFK R4PYV0XMNW SCSI CdRom Device
-- Disk List ---------------------------------------------------------------
(1) SAMSUNG HD154UI : 1500,3 GB [0/5/0, pd1]
(2) WDC WD5000BEVT-22ZAT0 : 500,1 GB [1/X/X, sa1] (V=1005, P=A102)
----------------------------------------------------------------------------
(1) SAMSUNG HD154UI
----------------------------------------------------------------------------
Model : SAMSUNG HD154UI
Firmware : 1AG01118
Serial Number : S1XWJD1ZA00198
Disk Size : 1500,3 GB (8,4/137,4/1500,3)
Buffer Size : 32767 KB
Queue Depth : 32
# of Sectors : 2930277168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA/ATAPI-7
Minor Version : ATA8-ACS version 3b
Transfer Mode : SATA/300
Power On Hours : 10625 hod.
Power On Count : 1283 krát
Temparature : 37 C (98 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 0000h [OFF]
AAM Level : FE00h [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _51 000000000000 Počet chyb čtení
03 _71 _71 _11 000000002486 Čas na roztočení ploten
04 _99 _99 __0 00000000050C Počet spuštění/zastavení
05 100 100 _10 000000000000 Počet přemapovaných sektorů
07 100 100 _51 000000000000 Počet chybných hledání
08 100 100 _15 000000000000 Čas potřebný na vyhledání
09 _98 _98 __0 000000002981 Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 000000000503 Počet cyklů zapnutí zařízení
0D 100 100 __0 000000000000 Počet pokusů o softvérové opravení chyb při čtení programů z disku
B7 100 100 __0 000000000000 Neznámý
B8 100 100 __0 000000000000 Ukončovacích chyb
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000000 Časový limit příkazu
BE _65 _57 __0 000023120023 Teplota toku vzduchu
C2 _63 _55 __0 000026120025 Teplota
C3 100 100 __0 00000346123C Počet oprav chybného čtení
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 100 100 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 _99 __0 000000000000 Počet chyb při zápisu sektorů
C9 100 100 __0 000000000000 Počet chyb při čtení programů z disku
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 8856 003F 003F 0000 0000 0000
010: 5331 5857 4A44 315A 4130 3938 3938 2020 2020 2020
020: 0003 FFFF 0004 3141 4730 3138 3138 5341 4D53 554E
030: 4720 4844 3135 3455 4920 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 1706 1706 0000 004C 0040
080: 00F8 0052 746B 7F69 4133 BC41 BC41 4123 20FF 009D
090: 009D 0000 FFFE 0000 FE00 0007 0007 006C 86A0 0001
100: 7B30 AEA8 0000 0000 0064 0000 0000 0000 5002 4E90
110: 0425 F127 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 003F 003F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 3AA5
----------------------------------------------------------------------------
(2) WDC WD5000BEVT-22ZAT0
----------------------------------------------------------------------------
Enclosure : Apacer Technology Inc. USB Device (V=1005, P=A102, sa1)
Model : WDC WD5000BEVT-22ZAT0
Firmware : 01.01A01
Serial Number : WD-WX90A69U0800
Disk Size : 500,1 GB (8,4/137,4/500,1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : USB (Serial ATA)
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 23436 hod.
Power On Count : 612 krát
Temparature : 34 C (93 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : 80FEh [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000002 Počet chyb čtení
03 189 178 _21 0000000005F5 Čas na roztočení ploten
04 _89 _89 __0 000000002CFF Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 100 253 __0 000000000000 Počet chybných hledání
09 _68 _68 __0 000000005B8C Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C 100 100 __0 000000000264 Počet cyklů zapnutí zařízení
C0 200 200 __0 000000000263 Počet vypnutí disku
C1 155 155 __0 000000021228 Počet cyklů načítání/vymazání
C2 113 104 __0 000000000022 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 100 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 _51 000000000000 Počet chyb při zápisu sektorů
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 5758 4136 4136 3955 3038 3030
020: 0000 4000 0032 3031 2E30 3031 3031 5744 4320 5744
030: 3530 3030 4245 5654 2D32 4154 4154 3020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0100
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 1F06 1F06 0000 004C 0040
080: 01FE 0000 746B 7F09 6163 BC09 BC09 6163 107F 0043
090: 0043 0080 FFFE 0000 80FE 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 0000 0000 5001 4EE2
110: ADAE A065 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0021 0000
130: 0000 0000 0000 16B7 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 303F 303F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 C1A5
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Defragmentaci disku si dělal?
Stáhni si Registry Defrag
na svojí plochu a spusť ho. Program se nainstaluje a potom se spustí.
Zavři si nejprve všechny ostatní programy a prohlížeče a deaktivuj antivir.
Klikni na „Next“.
Program proskenuje registry a vytvoří nový bod obnovy. Poté restartuje PC. Po restartu program můžeš zavřít.
Stáhni si Registry Defrag
na svojí plochu a spusť ho. Program se nainstaluje a potom se spustí.
Zavři si nejprve všechny ostatní programy a prohlížeče a deaktivuj antivir.
Klikni na „Next“.
Program proskenuje registry a vytvoří nový bod obnovy. Poté restartuje PC. Po restartu program můžeš zavřít.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 70 hostů