http://forum.czilla.cz/viewtopic.php?t=6353K čemu je dobrý Safe mód a jak jej aktivuji?
Safe mód slouží ke spuštění Firefoxu bez jakýchkoliv rozšíření a zásuvných modulů. To se hodí tehdy, když nějaké rozšíření naruší chod aplikace. V Safe módu můžete takové rozšíření bez obtíží odinstalovat. Safe mód spustíte odkazem v nabídce Start. Před spuštěním ukončete Firefox.
LOG nefunkční firefox...
Nemáš v tom FF nějaké rozšíření, které by to mohlo potenciálně způsobovat? Zkus ho spusit v Safe Mode.
- Pepas87
- Level 4
- Příspěvky: 1280
- Registrován: únor 07
- Bydliště: Jiřetín pod Bukovou
- Pohlaví:
- Stav:
Offline
- Kontakt:
tak se hlasim po delsi dobe ... problem stale pretrvava... FF nekdy jde a nekdy ne... uz jsem se naucil pracovat s Operou tak je to celkem v poho... ale kdyby jste nekdo prisel na to kde by mohla byt chyba klidne pisete...
Asus M4N68T; AMD Athlon X3 450 (3,2GHz);
2x (2x2048) RAM (1333MHz); ATI HD6850 1GB; 22" + 24" LG;
Vertex4 128GB + Samsung 1TB + 3TB; Samsung SH-s183l;
tiskárna Kyocera TASKalfa 250ci
2x (2x2048) RAM (1333MHz); ATI HD6850 1GB; 22" + 24" LG;
Vertex4 128GB + Samsung 1TB + 3TB; Samsung SH-s183l;
tiskárna Kyocera TASKalfa 250ci
- Baron Prášil
- Master Level 7
- Příspěvky: 4882
- Registrován: červen 06
- Pohlaví:
- Stav:
Offline
tohle najdi a smaž
C:\WINDOWS\system32\swreg.exe
a pošli aktuální log z hijackthis
a udělej log z Combofixu
- po spuštění se zobrazí podmínky užití, potvrď je stiskem klávesy 1
- dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem celý jeho obsah
C:\WINDOWS\system32\swreg.exe
a pošli aktuální log z hijackthis
a udělej log z Combofixu
- po spuštění se zobrazí podmínky užití, potvrď je stiskem klávesy 1
- dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem celý jeho obsah
- Pepas87
- Level 4
- Příspěvky: 1280
- Registrován: únor 07
- Bydliště: Jiřetín pod Bukovou
- Pohlaví:
- Stav:
Offline
- Kontakt:
tak tady máš Barone vše co chceš...
Logfile of HijackThis v1.99.1
Scan saved at 21:53:00, on 6.8.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Comodo\Firewall\cmdagent.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlservr.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
D:\Spyware terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
D:\Spyware terminator\SpywareTerminatorShield.exe
D:\daemon\DAEMON Tools\daemon.exe
C:\Program Files\Comodo\Firewall\CPF.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\Opera\Opera.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\NOTEPAD.EXE
F:\z plochy\hhh\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [SpywareTerminator] "D:\Spyware terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [DAEMON Tools] "D:\daemon\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\Comodo\Firewall\CPF.exe" /background
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\OFFICE\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\OFFICE\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{E60742F6-8530-44E8-B4B3-35964994725C}: NameServer = 194.228.41.65 194.228.41.113
O18 - Protocol: pcl - {182D0C85-206F-4103-B4FA-DCC1FB0A0A44} - D:\autodesk1\Inventor Professional 10\Bin\HSPCLPRO10.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Comodo Application Agent (CmdAgent) - COMODO - C:\Program Files\Comodo\Firewall\cmdagent.exe
O23 - Service: O&O Defrag 2000 (OOD2000) - O&O Software GmbH - C:\WINDOWS\system32\OOD2000.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - D:\Spyware terminator\sp_rsser.exe
a combofix:
ComboFix 07-08-04.3 - "stracke" 2007-08-06 21:44:19.1 [GMT 2:00] - NTFS
Syst‚m Microsoft Windows XP Professional 5.1.2600.2.1250.1.1029.18.True
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\regedit.com
C:\WINDOWS\system32\taskmgr.com
((((((((((((((((((((((((( Files Created from 2007-07-06 to 2007-08-06 )))))))))))))))))))))))))))))))
2007-07-28 17:42 <DIR> d-------- C:\Program Files\ReflexiveArcade
2007-07-26 21:15 <DIR> d-------- C:\Program Files\ToniArts
2007-07-26 21:15 <DIR> d-------- C:\Program Files\RegScrubXP
2007-07-25 21:07 <DIR> d-------- C:\DOCUME~1\stracke\DATAAP~1\Opera
2007-07-25 21:05 <DIR> d-------- C:\Program Files\Opera
2007-07-24 17:50 1,916,928 --------- C:\WINDOWS\UNNVEContent.exe
2007-07-23 20:39 <DIR> d-------- C:\DOCUME~1\stracke\DATAAP~1\Apple Computer
2007-07-23 19:49 <DIR> d-------- C:\DOCUME~1\stracke\DATAAP~1\Media Player Classic
2007-07-23 16:48 <DIR> d-------- C:\Program Files\QIP
2007-07-23 16:12 <DIR> d-------- C:\Program Files\repget
2007-07-21 19:20 <DIR> d-------- C:\Program Files\7-Zip
2007-07-15 21:30 7,952 --a------ C:\WINDOWS\system32\OODDRMBS.EXE
2007-07-15 21:30 598,016 --a------ C:\WINDOWS\system32\OOD2KCRS.dll
2007-07-15 21:30 29,272 --a------ C:\WINDOWS\system32\OOD2KBS.exe
2007-07-15 21:30 24,576 --a------ C:\WINDOWS\system32\OODCSPRO.dll
2007-07-15 21:30 238,080 --a------ C:\WINDOWS\system32\OOD2000.exe
2007-07-15 21:30 16,384 --a------ C:\WINDOWS\system32\ood2kmsg.dll
2007-07-15 21:30 <DIR> d-------- C:\WINDOWS\system32\dllcache.bak
2007-07-15 21:30 <DIR> d-------- C:\Program Files\OOD2KFRE
2007-07-14 19:28 <DIR> d--hs---- C:\System Volume Information
2007-07-13 20:26 89,872 -ra------ C:\WINDOWS\system32\drivers\k750mdm.sys
2007-07-13 20:26 79,488 -ra------ C:\WINDOWS\system32\drivers\k750obex.sys
2007-07-13 20:26 6,576 -ra------ C:\WINDOWS\system32\drivers\k750mdfl.sys
2007-07-13 20:26 6,144 -ra------ C:\WINDOWS\system32\drivers\k750cmnt.sys
2007-07-13 20:26 6,144 -ra------ C:\WINDOWS\system32\drivers\k750cm.sys
2007-07-13 20:25 55,216 -ra------ C:\WINDOWS\system32\drivers\k750bus.sys
2007-07-13 20:25 5,744 -ra------ C:\WINDOWS\system32\drivers\k750whnt.sys
2007-07-13 20:25 5,744 -ra------ C:\WINDOWS\system32\drivers\k750wh.sys
2007-07-09 11:50 <DIR> d-------- C:\Program Files\MegauploadToolbar
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-08-05 18:33 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\PlayFirst
2007-08-01 17:18 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\Zylom
2007-07-30 11:10 1585 --a------ C:\WINDOWS\mozver.dat
2007-07-26 21:25 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\Azureus
2007-07-26 21:15 --------- d--h----- C:\Program Files\InstallShield Installation Information
2007-07-25 11:10 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\Real
2007-07-24 17:28 25992 --a------ C:\WINDOWS\system32\pgdfgsvc.exe
2007-07-23 16:13 155648 --a------ C:\WINDOWS\system32\libssl32.dll
2007-07-15 21:36 --------- d-------- C:\Program Files\CCleaner
2007-07-09 11:50 --------- d-------- C:\Program Files\ICQToolbar
2007-07-04 17:49 44 --a------ C:\WINDOWS\system32\msssc.dll
2007-07-04 17:49 --------- d-------- C:\Program Files\Analog Devices
2007-07-02 22:45 --------- d-------- C:\Program Files\Lodus Software
2007-06-30 18:41 --------- d-------- C:\Program Files\SpeedFan
2007-06-28 16:42 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\BSplayer Pro
2007-06-17 00:11 51200 --a------ C:\WINDOWS\nircmd.exe
2007-06-16 10:03 71192 --a------ C:\WINDOWS\system32\perfc005.dat
2007-06-16 10:03 400700 --a------ C:\WINDOWS\system32\perfh005.dat
2007-06-13 13:35 --------- d-------- C:\Program Files\AxBx
2007-06-11 20:35 --------- d-------- C:\Program Files\Recuva
2007-05-16 17:18 86528 --a--c--- C:\WINDOWS\system32\dllcache\directdb.dll
2007-05-16 17:18 85504 --a--c--- C:\WINDOWS\system32\dllcache\wabimp.dll
2007-05-16 17:18 683520 --a--c--- C:\WINDOWS\system32\dllcache\inetcomm.dll
2007-05-16 17:18 683520 --a------ C:\WINDOWS\system32\inetcomm.dll
2007-05-16 17:18 510976 --a--c--- C:\WINDOWS\system32\dllcache\wab32.dll
2007-05-16 17:18 1314816 --a--c--- C:\WINDOWS\system32\dllcache\msoe.dll
2007-05-09 18:21 0 -rahs---- C:\MSDOS.SYS
2007-05-09 18:21 0 -rahs---- C:\IO.SYS
2007-05-09 18:21 0 --a------ C:\CONFIG.SYS
2007-05-09 18:21 0 --------- C:\AUTOEXEC.BAT
2007-05-09 18:17 21812 --a------ C:\WINDOWS\system32\emptyregdb.dat
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-04-30 17:42]
"AdslTaskBar"="stmctrl.dll" [2003-12-03 19:18 C:\WINDOWS\system32\stmctrl.dll]
"SpywareTerminator"="D:\Spyware terminator\SpywareTerminatorShield.exe" [2007-03-30 20:45]
"DAEMON Tools"="D:\daemon\DAEMON Tools\daemon.exe" [2006-11-12 12:48]
"COMODO Firewall Pro"="C:\Program Files\Comodo\Firewall\CPF.exe" [2007-05-09 19:49]
"OpwareSE2"="C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe" [2003-05-08 11:00]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" [2007-03-14 03:43]
"Smapp"="C:\Program Files\Analog Devices\SoundMAX\SMTray.exe" [2003-05-05 08:57]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-17 15:49]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\runonce]
"ICQ Lite"=C:\Program Files\ICQLite\ICQLite.exe -trayboot
C:\Documents and Settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 22:05:26]
R0 Inspect;Comodo Network Engine;C:\WINDOWS\system32\DRIVERS\inspect.sys
R0 uagp35;Filtr Microsoft AGPv3.5;C:\WINDOWS\system32\DRIVERS\uagp35.sys
R1 sp_rsdrv2;Spyware Terminator Driver 2;\??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
R2 MSSQL$INVENTORCONTENT;MSSQL$INVENTORCONTENT;C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlservr.exe -sINVENTORCONTENT
R2 SoundMAX Agent Service (default);SoundMAX Agent Service;C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver;C:\WINDOWS\system32\DRIVERS\fetnd5.sys
R3 PSched;Pl novaź paket… technologie QoS;C:\WINDOWS\system32\DRIVERS\psched.sys
R3 Stmatm;ATM/ADSL miniport;C:\WINDOWS\system32\DRIVERS\stmatm.sys
R3 TaurusUsb;ADSL Modem USB Service;C:\WINDOWS\system32\DRIVERS\torususb.sys
S3 k750bus;Sony Ericsson 750 driver (WDM);C:\WINDOWS\system32\DRIVERS\k750bus.sys
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter;C:\WINDOWS\system32\DRIVERS\k750mdfl.sys
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers;C:\WINDOWS\system32\DRIVERS\k750mdm.sys
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers;C:\WINDOWS\system32\DRIVERS\k750obex.sys
S3 SQLAgent$INVENTORCONTENT;SQLAgent$INVENTORCONTENT;C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlagent.EXE -i INVENTORCONTENT
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
Schedule
**************************************************************************
catchme 0.3.1061 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-08-06 21:46:35
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Control Panel\Cursors\Schemes]
"\f\1e?r?n?\xe9? ?u?k?a?z?a?t?e?l?e? ?"="C:\WINDOWS\cursors\arrow_r.cur,C:\WINDOWS\cursors\help_r.cur,C:\WINDOWS\cursors\wait_r.cur,C:\WINDOWS\cursors\busy_r.cur,C:\WINDOWS\cursors\cross_r.cur,C:\WINDOWS\cursors\beam_r.cur,C:\WINDOWS\cursors\pen_r.cur,C:\WINDOWS\cursors\no_r.cur,C:\WINDOWS\cursors\size4_r.cur,C:\WINDOWS\cursors\size3_r.cur,C:\WINDOWS\cursors\size2_r.cur,C:\WINDOWS\cursors\size1_r.cur,C:\WINDOWS\cursors\move_r.cur,C:\WINDOWS\cursors\up_r.cur"
"\f\1e?r?n?\xe9? ?u?k?a?z?a?t?e?l?e? ?(?v?e?l?k?\xe9?)?"="C:\WINDOWS\cursors\arrow_rm.cur,C:\WINDOWS\cursors\help_rm.cur,C:\WINDOWS\cursors\wait_rm.cur,C:\WINDOWS\cursors\busy_rm.cur,C:\WINDOWS\cursors\cross_rm.cur,C:\WINDOWS\cursors\beam_rm.cur,C:\WINDOWS\cursors\pen_rm.cur,C:\WINDOWS\cursors\no_rm.cur,C:\WINDOWS\cursors\size4_rm.cur,C:\WINDOWS\cursors\size3_rm.cur,C:\WINDOWS\cursors\size2_rm.cur,C:\WINDOWS\cursors\size1_rm.cur,C:\WINDOWS\cursors\move_rm.cur,C:\WINDOWS\cursors\up_rm.cur"
"\f\1e?r?n?\xe9? ?u?k?a?z?a?t?e?l?e? ?(?n?e?j?v?\e\1t?a\1\xed?)?"="C:\WINDOWS\cursors\arrow_rl.cur,C:\WINDOWS\cursors\help_rl.cur,C:\WINDOWS\cursors\wait_rl.cur,C:\WINDOWS\cursors\busy_rl.cur,C:\WINDOWS\cursors\cross_rl.cur,C:\WINDOWS\cursors\beam_rl.cur,C:\WINDOWS\cursors\pen_rl.cur,C:\WINDOWS\cursors\no_rl.cur,C:\WINDOWS\cursors\size4_rl.cur,C:\WINDOWS\cursors\size3_rl.cur,C:\WINDOWS\cursors\size2_rl.cur,C:\WINDOWS\cursors\size1_rl.cur,C:\WINDOWS\cursors\move_rl.cur,C:\WINDOWS\cursors\up_rl.cur"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System]
"OODEFRAG08.00.00.01WORKSTATION"="FD088B7705157CF0F074C8AF902FD260A0F5FEAEC7156881F915179D00E58DD5A6B5445D2DE9E56D7FC5DF62D
F3118E383C5625CC4F985346C1C632EBFF297D2CAB8A836144394A4368ACF681369923D8843FAB2EBE8E96FAF6D943B7AC2C32D0BCDA464B3C6B3B6D79
C2DA798ACE4A0B404A53D3D80D01E297BF293DFE207234C66051B901192576A096FDA63C2D8D54DD321DA3DD89B3A80EF27DB26557D8537A47C632F2F
244DB813EF0E6AE659395EB0923DF377CFD7A0A3BD0C0411E3BDB964A29A1826FDF3D0AEEFA5A74B76BA37CD826DEBDB961BFEBC9E127BECC74CFEBC9
E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74C8EDD5E5BE2F6E667A6171C11EC38DE3DA6A0AC4980AC
7933C038D530D6EB3452589142F9AC1CB48602A5FBF610550D67C5412D30EC65229B8365F086FD0B7951731C88FEDD6B33F5E0498BAC534005C6F9B3276625D045302D6EF7527DC
205FE1B91E7BA67363A608E351E3C4FAC7832944E88371C4C41A39150679D56E9D7A6739D76895AE3302F73D39625275167465E5B9A6529FACDE5794C9290AD2E84AC69A22F964F5
022DE3944B8B981D5F536E3568A8A24724AFEF05DAD292EB1400EA936F265DFCCC07F50D8ACA18B57EEC573EC6B106ABBB6884B2E5437858D68D9A621844BAA1C5FB56B96FE577
3663E4EA304AF38DAD6BBAF9C20065F64CA7AB296618BF052F5F339813A9FA96E0A74BC4AB1B315DA34A139BD48A21B006A1AD0F32892567D089D554D30E2B93239C61405C3320E
D3B9D579CC6E73B6945E8DFD7C5C894BD7F01AEB4F9D02807CE20E683438CE60B2436B5B2B8E21535C0DBF1BB29544760F454E70C95619C78CE64762FA420E9A661D975DFBDA39E
49CD1409BDBA37AD1550DC1EBC36628AE259913C042C958A2E409B490A9B6303518FCC1040305C52A61432079888B93A70EC4B654356B7C2D263E401D613A5B6019509AF27671A
6A2EE5A394BA7B8257913261C82C475AB48A7665CBB94B275D7ED82C516C7D281AFBCB381A3F39587BE846DCD4325ECFA52E99FCEBBF7219CDFE8406330CDC49B1C0C2990DB05
A4CE63540FEA44E87E380F07C81FE05B853115DA73499211AA285A48522DF357766B4FC3882C8FB31C3594580037CF7E30058A7CBA1BD2159A35D5089962FA4CE30BE38E153642F89
5CB8F3A9043C533DECF623B2341B70B894E85E6972603576E3EE45BD0CC0AB6552CF8EE2DADFDB16C88133D89CC474294BC322CCDB990F19240588C1EF3A794A3021A78F03961A
72A6E0BB2C2D63D64A82D9F04FA0189C9674156A56E2C265F5E1045A0597A8DA0C7B5028915BB007F25BED2582AEAB0EFEBC0254D86D60FD55B926428DDC6FB0CEA1E3E5DDC4FC
B6AB58159F689BB9559BC98A391A3C2C198DED85FE66B7D8"
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Completion time: 2007-08-06 21:48:18
C:\ComboFix-quarantined-files.txt ... 2007-08-06 21:47
C:\ComboFix2.txt ... 2007-06-28 16:19
--- E O F ---
FF zatim zas jde...
diky...

Logfile of HijackThis v1.99.1
Scan saved at 21:53:00, on 6.8.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Comodo\Firewall\cmdagent.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlservr.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
D:\Spyware terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
D:\Spyware terminator\SpywareTerminatorShield.exe
D:\daemon\DAEMON Tools\daemon.exe
C:\Program Files\Comodo\Firewall\CPF.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\Opera\Opera.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\NOTEPAD.EXE
F:\z plochy\hhh\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [SpywareTerminator] "D:\Spyware terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [DAEMON Tools] "D:\daemon\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\Comodo\Firewall\CPF.exe" /background
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\OFFICE\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\OFFICE\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{E60742F6-8530-44E8-B4B3-35964994725C}: NameServer = 194.228.41.65 194.228.41.113
O18 - Protocol: pcl - {182D0C85-206F-4103-B4FA-DCC1FB0A0A44} - D:\autodesk1\Inventor Professional 10\Bin\HSPCLPRO10.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Comodo Application Agent (CmdAgent) - COMODO - C:\Program Files\Comodo\Firewall\cmdagent.exe
O23 - Service: O&O Defrag 2000 (OOD2000) - O&O Software GmbH - C:\WINDOWS\system32\OOD2000.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - D:\Spyware terminator\sp_rsser.exe
a combofix:
ComboFix 07-08-04.3 - "stracke" 2007-08-06 21:44:19.1 [GMT 2:00] - NTFS
Syst‚m Microsoft Windows XP Professional 5.1.2600.2.1250.1.1029.18.True
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\regedit.com
C:\WINDOWS\system32\taskmgr.com
((((((((((((((((((((((((( Files Created from 2007-07-06 to 2007-08-06 )))))))))))))))))))))))))))))))
2007-07-28 17:42 <DIR> d-------- C:\Program Files\ReflexiveArcade
2007-07-26 21:15 <DIR> d-------- C:\Program Files\ToniArts
2007-07-26 21:15 <DIR> d-------- C:\Program Files\RegScrubXP
2007-07-25 21:07 <DIR> d-------- C:\DOCUME~1\stracke\DATAAP~1\Opera
2007-07-25 21:05 <DIR> d-------- C:\Program Files\Opera
2007-07-24 17:50 1,916,928 --------- C:\WINDOWS\UNNVEContent.exe
2007-07-23 20:39 <DIR> d-------- C:\DOCUME~1\stracke\DATAAP~1\Apple Computer
2007-07-23 19:49 <DIR> d-------- C:\DOCUME~1\stracke\DATAAP~1\Media Player Classic
2007-07-23 16:48 <DIR> d-------- C:\Program Files\QIP
2007-07-23 16:12 <DIR> d-------- C:\Program Files\repget
2007-07-21 19:20 <DIR> d-------- C:\Program Files\7-Zip
2007-07-15 21:30 7,952 --a------ C:\WINDOWS\system32\OODDRMBS.EXE
2007-07-15 21:30 598,016 --a------ C:\WINDOWS\system32\OOD2KCRS.dll
2007-07-15 21:30 29,272 --a------ C:\WINDOWS\system32\OOD2KBS.exe
2007-07-15 21:30 24,576 --a------ C:\WINDOWS\system32\OODCSPRO.dll
2007-07-15 21:30 238,080 --a------ C:\WINDOWS\system32\OOD2000.exe
2007-07-15 21:30 16,384 --a------ C:\WINDOWS\system32\ood2kmsg.dll
2007-07-15 21:30 <DIR> d-------- C:\WINDOWS\system32\dllcache.bak
2007-07-15 21:30 <DIR> d-------- C:\Program Files\OOD2KFRE
2007-07-14 19:28 <DIR> d--hs---- C:\System Volume Information
2007-07-13 20:26 89,872 -ra------ C:\WINDOWS\system32\drivers\k750mdm.sys
2007-07-13 20:26 79,488 -ra------ C:\WINDOWS\system32\drivers\k750obex.sys
2007-07-13 20:26 6,576 -ra------ C:\WINDOWS\system32\drivers\k750mdfl.sys
2007-07-13 20:26 6,144 -ra------ C:\WINDOWS\system32\drivers\k750cmnt.sys
2007-07-13 20:26 6,144 -ra------ C:\WINDOWS\system32\drivers\k750cm.sys
2007-07-13 20:25 55,216 -ra------ C:\WINDOWS\system32\drivers\k750bus.sys
2007-07-13 20:25 5,744 -ra------ C:\WINDOWS\system32\drivers\k750whnt.sys
2007-07-13 20:25 5,744 -ra------ C:\WINDOWS\system32\drivers\k750wh.sys
2007-07-09 11:50 <DIR> d-------- C:\Program Files\MegauploadToolbar
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-08-05 18:33 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\PlayFirst
2007-08-01 17:18 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\Zylom
2007-07-30 11:10 1585 --a------ C:\WINDOWS\mozver.dat
2007-07-26 21:25 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\Azureus
2007-07-26 21:15 --------- d--h----- C:\Program Files\InstallShield Installation Information
2007-07-25 11:10 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\Real
2007-07-24 17:28 25992 --a------ C:\WINDOWS\system32\pgdfgsvc.exe
2007-07-23 16:13 155648 --a------ C:\WINDOWS\system32\libssl32.dll
2007-07-15 21:36 --------- d-------- C:\Program Files\CCleaner
2007-07-09 11:50 --------- d-------- C:\Program Files\ICQToolbar
2007-07-04 17:49 44 --a------ C:\WINDOWS\system32\msssc.dll
2007-07-04 17:49 --------- d-------- C:\Program Files\Analog Devices
2007-07-02 22:45 --------- d-------- C:\Program Files\Lodus Software
2007-06-30 18:41 --------- d-------- C:\Program Files\SpeedFan
2007-06-28 16:42 --------- d-------- C:\DOCUME~1\stracke\DATAAP~1\BSplayer Pro
2007-06-17 00:11 51200 --a------ C:\WINDOWS\nircmd.exe
2007-06-16 10:03 71192 --a------ C:\WINDOWS\system32\perfc005.dat
2007-06-16 10:03 400700 --a------ C:\WINDOWS\system32\perfh005.dat
2007-06-13 13:35 --------- d-------- C:\Program Files\AxBx
2007-06-11 20:35 --------- d-------- C:\Program Files\Recuva
2007-05-16 17:18 86528 --a--c--- C:\WINDOWS\system32\dllcache\directdb.dll
2007-05-16 17:18 85504 --a--c--- C:\WINDOWS\system32\dllcache\wabimp.dll
2007-05-16 17:18 683520 --a--c--- C:\WINDOWS\system32\dllcache\inetcomm.dll
2007-05-16 17:18 683520 --a------ C:\WINDOWS\system32\inetcomm.dll
2007-05-16 17:18 510976 --a--c--- C:\WINDOWS\system32\dllcache\wab32.dll
2007-05-16 17:18 1314816 --a--c--- C:\WINDOWS\system32\dllcache\msoe.dll
2007-05-09 18:21 0 -rahs---- C:\MSDOS.SYS
2007-05-09 18:21 0 -rahs---- C:\IO.SYS
2007-05-09 18:21 0 --a------ C:\CONFIG.SYS
2007-05-09 18:21 0 --------- C:\AUTOEXEC.BAT
2007-05-09 18:17 21812 --a------ C:\WINDOWS\system32\emptyregdb.dat
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-04-30 17:42]
"AdslTaskBar"="stmctrl.dll" [2003-12-03 19:18 C:\WINDOWS\system32\stmctrl.dll]
"SpywareTerminator"="D:\Spyware terminator\SpywareTerminatorShield.exe" [2007-03-30 20:45]
"DAEMON Tools"="D:\daemon\DAEMON Tools\daemon.exe" [2006-11-12 12:48]
"COMODO Firewall Pro"="C:\Program Files\Comodo\Firewall\CPF.exe" [2007-05-09 19:49]
"OpwareSE2"="C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe" [2003-05-08 11:00]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" [2007-03-14 03:43]
"Smapp"="C:\Program Files\Analog Devices\SoundMAX\SMTray.exe" [2003-05-05 08:57]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-17 15:49]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\runonce]
"ICQ Lite"=C:\Program Files\ICQLite\ICQLite.exe -trayboot
C:\Documents and Settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 22:05:26]
R0 Inspect;Comodo Network Engine;C:\WINDOWS\system32\DRIVERS\inspect.sys
R0 uagp35;Filtr Microsoft AGPv3.5;C:\WINDOWS\system32\DRIVERS\uagp35.sys
R1 sp_rsdrv2;Spyware Terminator Driver 2;\??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
R2 MSSQL$INVENTORCONTENT;MSSQL$INVENTORCONTENT;C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlservr.exe -sINVENTORCONTENT
R2 SoundMAX Agent Service (default);SoundMAX Agent Service;C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver;C:\WINDOWS\system32\DRIVERS\fetnd5.sys
R3 PSched;Pl novaź paket… technologie QoS;C:\WINDOWS\system32\DRIVERS\psched.sys
R3 Stmatm;ATM/ADSL miniport;C:\WINDOWS\system32\DRIVERS\stmatm.sys
R3 TaurusUsb;ADSL Modem USB Service;C:\WINDOWS\system32\DRIVERS\torususb.sys
S3 k750bus;Sony Ericsson 750 driver (WDM);C:\WINDOWS\system32\DRIVERS\k750bus.sys
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter;C:\WINDOWS\system32\DRIVERS\k750mdfl.sys
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers;C:\WINDOWS\system32\DRIVERS\k750mdm.sys
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers;C:\WINDOWS\system32\DRIVERS\k750obex.sys
S3 SQLAgent$INVENTORCONTENT;SQLAgent$INVENTORCONTENT;C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlagent.EXE -i INVENTORCONTENT
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
Schedule
**************************************************************************
catchme 0.3.1061 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-08-06 21:46:35
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Control Panel\Cursors\Schemes]
"\f\1e?r?n?\xe9? ?u?k?a?z?a?t?e?l?e? ?"="C:\WINDOWS\cursors\arrow_r.cur,C:\WINDOWS\cursors\help_r.cur,C:\WINDOWS\cursors\wait_r.cur,C:\WINDOWS\cursors\busy_r.cur,C:\WINDOWS\cursors\cross_r.cur,C:\WINDOWS\cursors\beam_r.cur,C:\WINDOWS\cursors\pen_r.cur,C:\WINDOWS\cursors\no_r.cur,C:\WINDOWS\cursors\size4_r.cur,C:\WINDOWS\cursors\size3_r.cur,C:\WINDOWS\cursors\size2_r.cur,C:\WINDOWS\cursors\size1_r.cur,C:\WINDOWS\cursors\move_r.cur,C:\WINDOWS\cursors\up_r.cur"
"\f\1e?r?n?\xe9? ?u?k?a?z?a?t?e?l?e? ?(?v?e?l?k?\xe9?)?"="C:\WINDOWS\cursors\arrow_rm.cur,C:\WINDOWS\cursors\help_rm.cur,C:\WINDOWS\cursors\wait_rm.cur,C:\WINDOWS\cursors\busy_rm.cur,C:\WINDOWS\cursors\cross_rm.cur,C:\WINDOWS\cursors\beam_rm.cur,C:\WINDOWS\cursors\pen_rm.cur,C:\WINDOWS\cursors\no_rm.cur,C:\WINDOWS\cursors\size4_rm.cur,C:\WINDOWS\cursors\size3_rm.cur,C:\WINDOWS\cursors\size2_rm.cur,C:\WINDOWS\cursors\size1_rm.cur,C:\WINDOWS\cursors\move_rm.cur,C:\WINDOWS\cursors\up_rm.cur"
"\f\1e?r?n?\xe9? ?u?k?a?z?a?t?e?l?e? ?(?n?e?j?v?\e\1t?a\1\xed?)?"="C:\WINDOWS\cursors\arrow_rl.cur,C:\WINDOWS\cursors\help_rl.cur,C:\WINDOWS\cursors\wait_rl.cur,C:\WINDOWS\cursors\busy_rl.cur,C:\WINDOWS\cursors\cross_rl.cur,C:\WINDOWS\cursors\beam_rl.cur,C:\WINDOWS\cursors\pen_rl.cur,C:\WINDOWS\cursors\no_rl.cur,C:\WINDOWS\cursors\size4_rl.cur,C:\WINDOWS\cursors\size3_rl.cur,C:\WINDOWS\cursors\size2_rl.cur,C:\WINDOWS\cursors\size1_rl.cur,C:\WINDOWS\cursors\move_rl.cur,C:\WINDOWS\cursors\up_rl.cur"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System]
"OODEFRAG08.00.00.01WORKSTATION"="FD088B7705157CF0F074C8AF902FD260A0F5FEAEC7156881F915179D00E58DD5A6B5445D2DE9E56D7FC5DF62D
F3118E383C5625CC4F985346C1C632EBFF297D2CAB8A836144394A4368ACF681369923D8843FAB2EBE8E96FAF6D943B7AC2C32D0BCDA464B3C6B3B6D79
C2DA798ACE4A0B404A53D3D80D01E297BF293DFE207234C66051B901192576A096FDA63C2D8D54DD321DA3DD89B3A80EF27DB26557D8537A47C632F2F
244DB813EF0E6AE659395EB0923DF377CFD7A0A3BD0C0411E3BDB964A29A1826FDF3D0AEEFA5A74B76BA37CD826DEBDB961BFEBC9E127BECC74CFEBC9
E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74C8EDD5E5BE2F6E667A6171C11EC38DE3DA6A0AC4980AC
7933C038D530D6EB3452589142F9AC1CB48602A5FBF610550D67C5412D30EC65229B8365F086FD0B7951731C88FEDD6B33F5E0498BAC534005C6F9B3276625D045302D6EF7527DC
205FE1B91E7BA67363A608E351E3C4FAC7832944E88371C4C41A39150679D56E9D7A6739D76895AE3302F73D39625275167465E5B9A6529FACDE5794C9290AD2E84AC69A22F964F5
022DE3944B8B981D5F536E3568A8A24724AFEF05DAD292EB1400EA936F265DFCCC07F50D8ACA18B57EEC573EC6B106ABBB6884B2E5437858D68D9A621844BAA1C5FB56B96FE577
3663E4EA304AF38DAD6BBAF9C20065F64CA7AB296618BF052F5F339813A9FA96E0A74BC4AB1B315DA34A139BD48A21B006A1AD0F32892567D089D554D30E2B93239C61405C3320E
D3B9D579CC6E73B6945E8DFD7C5C894BD7F01AEB4F9D02807CE20E683438CE60B2436B5B2B8E21535C0DBF1BB29544760F454E70C95619C78CE64762FA420E9A661D975DFBDA39E
49CD1409BDBA37AD1550DC1EBC36628AE259913C042C958A2E409B490A9B6303518FCC1040305C52A61432079888B93A70EC4B654356B7C2D263E401D613A5B6019509AF27671A
6A2EE5A394BA7B8257913261C82C475AB48A7665CBB94B275D7ED82C516C7D281AFBCB381A3F39587BE846DCD4325ECFA52E99FCEBBF7219CDFE8406330CDC49B1C0C2990DB05
A4CE63540FEA44E87E380F07C81FE05B853115DA73499211AA285A48522DF357766B4FC3882C8FB31C3594580037CF7E30058A7CBA1BD2159A35D5089962FA4CE30BE38E153642F89
5CB8F3A9043C533DECF623B2341B70B894E85E6972603576E3EE45BD0CC0AB6552CF8EE2DADFDB16C88133D89CC474294BC322CCDB990F19240588C1EF3A794A3021A78F03961A
72A6E0BB2C2D63D64A82D9F04FA0189C9674156A56E2C265F5E1045A0597A8DA0C7B5028915BB007F25BED2582AEAB0EFEBC0254D86D60FD55B926428DDC6FB0CEA1E3E5DDC4FC
B6AB58159F689BB9559BC98A391A3C2C198DED85FE66B7D8"
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Completion time: 2007-08-06 21:48:18
C:\ComboFix-quarantined-files.txt ... 2007-08-06 21:47
C:\ComboFix2.txt ... 2007-06-28 16:19
--- E O F ---
FF zatim zas jde...
diky...
Asus M4N68T; AMD Athlon X3 450 (3,2GHz);
2x (2x2048) RAM (1333MHz); ATI HD6850 1GB; 22" + 24" LG;
Vertex4 128GB + Samsung 1TB + 3TB; Samsung SH-s183l;
tiskárna Kyocera TASKalfa 250ci
2x (2x2048) RAM (1333MHz); ATI HD6850 1GB; 22" + 24" LG;
Vertex4 128GB + Samsung 1TB + 3TB; Samsung SH-s183l;
tiskárna Kyocera TASKalfa 250ci
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 72 hostů