Spusť znovu ComboFix a vlož sem z něho log co se zobrazí po jeho dokončení.
Btw. Stahoval jsi SUPERAntiSpyware nebo jsi ho už měl někde na disku. Protože máš starší verzi (předchozí verzi).
prosim o kontrolu
ComboFix 07-12-21.4 - PC 2007-12-27 12:56:15.4 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.1.1029.18.1563 [GMT 1:00]
Running from: C:\Documents and Settings\PC\Plocha\ComboFix.exe
.
((((((((((((((((((((((((( Files Created from 2007-11-27 to 2007-12-27 )))))))))))))))))))))))))))))))
.
2007-12-26 04:09 . 2007-12-27 12:30 <DIR> d-------- C:\VundoFix Backups
2007-12-26 03:06 . 2007-09-04 19:45 <DIR> d--h----- C:\Documents and Settings\Administrator\ćablony
2007-12-26 03:06 . 2007-12-16 22:28 <DIR> d-------- C:\Documents and Settings\Administrator\Plocha
2007-12-26 03:06 . 2007-12-26 03:06 <DIR> d---s---- C:\Documents and Settings\Administrator\Oblˇben‚ polo§ky
2007-12-26 03:06 . 2007-09-04 21:33 <DIR> dr------- C:\Documents and Settings\Administrator\Nabˇdka Start
2007-12-26 03:06 . 2007-09-04 21:33 <DIR> dr-h----- C:\Documents and Settings\Administrator\Data aplikacˇ
2007-12-26 01:54 . 2007-12-26 03:50 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2007-12-26 01:53 . 2007-12-26 01:53 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-12-26 00:51 . 2007-12-26 00:51 <DIR> d-------- C:\Program Files\Alwil Software
2007-12-26 00:50 . 2007-12-26 00:50 0 --a------ C:\WINDOWS\XXLGSC
2007-12-25 23:10 . 2007-12-25 23:10 138,624 --a------ C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
2007-12-25 23:08 . 2007-12-27 11:52 15,360 --a------ C:\WINDOWS\system32\ctfmon .exe
2007-12-25 23:01 . 2007-12-27 12:44 <DIR> d-------- C:\Program Files\WinClamAVShield
2007-12-25 21:52 . 2007-12-25 21:52 <DIR> d-------- C:\WINDOWS\system32\LogFiles
2007-12-25 21:05 . 2007-12-27 12:47 <DIR> d-------- C:\Program Files\Spyware Terminator
2007-12-25 19:51 . 2007-12-25 19:51 <DIR> d-------- C:\Program Files\The Adventure Company
2007-12-25 18:55 . 2007-12-25 18:55 <DIR> d-------- C:\WINDOWS\ppqvmpqr
2007-12-25 17:38 . 2007-12-25 17:38 <DIR> d-------- C:\WINDOWS\system32\URTTEMP
2007-12-25 17:34 . 2007-12-25 22:19 <DIR> d-------- C:\Program Files\Sony
2007-12-25 17:21 . 2007-12-25 23:47 <DIR> d-------- C:\Program Files\Sony Setup
2007-12-25 15:51 . 2007-12-25 15:51 <DIR> d-------- C:\Program Files\Microids
2007-12-21 20:52 . 2007-12-21 20:52 286,720 --------- C:\WINDOWS\Setup1.exe
2007-12-21 20:52 . 2007-12-21 20:52 73,216 --a------ C:\WINDOWS\ST6UNST.EXE
2007-12-21 17:06 . 2007-12-21 17:06 <DIR> d-------- C:\Downloads
2007-12-20 15:45 . 2007-12-20 15:45 <DIR> d-------- C:\Program Files\A4Tech
2007-12-20 00:15 . 2007-12-20 00:15 <DIR> d-------- C:\Program Files\TGTSoft
2007-12-20 00:09 . 2007-12-20 00:14 <DIR> d-------- C:\Program Files\StrokeIt
2007-12-19 21:27 . 2007-12-19 21:29 5,261 --a------ C:\WINDOWS\BricoPackFoldersDelete.cmd
2007-12-18 15:48 . 2007-12-18 15:48 395,744 --a------ C:\WINDOWS\system32\drivers\timntr.sys
2007-12-18 15:48 . 2007-12-18 15:48 39,264 --a------ C:\WINDOWS\system32\drivers\tifsfilt.sys
2007-12-18 15:27 . 2007-12-18 15:48 114,048 --a------ C:\WINDOWS\system32\drivers\snapman.sys
2007-12-18 09:04 . 2007-12-18 09:04 <DIR> d-------- C:\Program Files\WinAVI Video Converter
2007-12-17 22:52 . 2007-12-17 22:52 <DIR> d-------- C:\Program Files\ABCgames Cheater
2007-12-17 00:23 . 2007-12-17 00:27 <DIR> d-------- C:\Program Files\Wise Disk Cleaner
2007-12-16 23:46 . 2007-12-16 23:46 <DIR> d-------- C:\Program Files\Webteh
2007-12-16 23:09 . 2007-12-16 23:09 <DIR> d-------- C:\Program Files\Apple Software Update
2007-12-16 23:08 . 2007-12-16 23:08 <DIR> d-------- C:\Program Files\Common Files\Ulead
2007-12-16 23:08 . 2006-05-11 18:41 654 --------- C:\WINDOWS\remove.iss
2007-12-16 22:28 . 2007-12-16 22:28 <DIR> d-------- C:\Documents and Settings\Default User\Plocha
2007-12-16 22:27 . 2007-12-16 22:28 <DIR> d-------- C:\Program Files\CyberLink
2007-12-16 19:46 . 2006-04-29 14:25 40,960 --a------ C:\WINDOWS\system32\psfind.dll
2007-12-16 19:42 . 2007-12-16 19:42 <DIR> d-------- C:\Program Files\THQ
2007-12-15 13:18 . 2007-12-15 13:18 <DIR> d-------- C:\Program Files\VSO
2007-12-15 13:18 . 2006-09-29 11:24 217,127 --a------ C:\WINDOWS\system32\drv43260.dll
2007-12-15 13:18 . 2006-09-29 11:25 208,935 --a------ C:\WINDOWS\system32\drv33260.dll
2007-12-15 13:18 . 2006-09-29 11:26 176,165 --a------ C:\WINDOWS\system32\drv23260.dll
2007-12-15 13:18 . 2007-12-15 13:18 47,360 --a------ C:\WINDOWS\system32\drivers\pcouffin.sys
2007-12-15 11:11 . 2005-11-21 06:48 45,056 --a------ C:\WINDOWS\system32\WNASPI32.DLL
2007-12-15 11:11 . 2005-11-21 06:48 16,512 --a------ C:\WINDOWS\system32\drivers\ASPI32.SYS
2007-12-14 18:41 . 2007-12-14 18:42 <DIR> d-------- C:\Program Files\Luxor 3
2007-12-13 20:04 . 2007-12-13 20:04 <DIR> d-------- C:\Program Files\Activision Value
2007-12-10 19:46 . 2007-12-10 19:46 <DIR> d-------- C:\Program Files\Common Files\OKsoftware
2007-12-09 20:07 . 2007-12-09 20:07 <DIR> d-------- C:\Program Files\Free MP3 Sound Recorder
2007-12-09 20:07 . 2004-12-02 18:20 1,843,200 --a------ C:\WINDOWS\system32\NCTAudioFile2.dll
2007-12-09 20:07 . 2004-05-20 13:07 335,872 --a------ C:\WINDOWS\system32\NCTAudioVisualization2.dll
2007-12-09 20:07 . 2004-08-25 13:53 311,296 --a------ C:\WINDOWS\system32\NCTAudioRecord2.dll
2007-12-09 18:08 . 2007-10-04 17:14 136,260 --a------ C:\WINDOWS\system32\nvapps.nvb
2007-12-09 17:50 . 2007-10-04 18:16 356,352 --a------ C:\WINDOWS\system32\NVUNINST.EXE
2007-12-09 17:48 . 2007-12-09 17:48 <DIR> d-------- C:\WINDOWS\system32\WinFast
2007-12-09 17:45 . 2007-12-09 18:09 <DIR> d-------- C:\WINDOWS\nview
2007-12-09 17:45 . 2007-03-07 01:49 356,352 --a------ C:\WINDOWS\system32\nvudisp.exe
2007-12-09 17:45 . 2007-12-09 17:53 138,552 --a------ C:\WINDOWS\system32\nvapps.xml
2007-12-09 17:45 . 2007-10-04 17:14 17,525 --a------ C:\WINDOWS\system32\nvdisp.nvu
2007-12-07 15:25 . 2007-12-27 11:51 <DIR> d-------- C:\Program Files\DAEMON Tools
2007-12-06 21:25 . 2007-12-06 21:25 <DIR> d-------- C:\FLVPlayer
2007-12-06 16:34 . 2007-12-06 16:34 <DIR> d-------- C:\Program Files\Futuremark
2007-12-05 15:45 . 2005-03-25 18:24 9,600 --a------ C:\WINDOWS\system32\drivers\winfoxiobackup.sys
2007-12-05 15:41 . 2007-12-05 15:54 <DIR> d-------- C:\WINDOWS\system32\WinFox
2007-12-05 15:41 . 2005-03-25 18:24 9,600 --------- C:\WINDOWS\system32\drivers\WINFOXIO.sys
2007-11-29 21:06 . 2007-11-30 22:29 8 --a------ C:\WINDOWS\system32\nvModes.dat
2007-11-29 19:41 . 2007-12-19 21:28 3,888,054 --a------ C:\WINDOWS\BricoPack Wallpaper.bmp
2007-11-29 19:41 . 2007-12-19 21:29 71,326 --a------ C:\WINDOWS\BricoPackUninst.cmd
2007-11-29 19:39 . 2007-12-20 00:14 <DIR> d-------- C:\WINDOWS\BricoPacks
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-26 02:26 --------- d-----w C:\Program Files\NVIDIA
2007-12-25 15:28 --------- d-----w C:\Program Files\Call of Duty
2007-12-22 16:19 --------- d-----w C:\Program Files\Opera
2007-12-21 23:32 --------- d-----w C:\Program Files\Winamp
2007-12-21 20:32 --------- d-----w C:\Program Files\EurotelSMS
2007-12-19 20:45 76 ---ha-w C:\Program Files\Desktop.ini
2007-12-18 22:14 --------- d-----r C:\Program Files\ikony na plochu
2007-12-16 23:23 --------- d-----w C:\Program Files\Wise Registry Cleaner
2007-12-16 22:35 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-12-16 22:10 --------- d-----w C:\Program Files\QuickTime
2007-12-15 10:15 --------- d-----w C:\Program Files\Xilisoft
2007-12-14 14:42 --------- d-----w C:\Program Files\Sony Ericsson
2007-12-08 14:45 --------- d-----w C:\Program Files\7-Zip
2007-12-06 15:20 --------- d-----w C:\Program Files\OpenSSL
2007-11-26 17:34 --------- d-----w C:\Program Files\Rockstar Games
2007-11-26 17:21 22,328 ----a-w C:\WINDOWS\system32\drivers\PnkBstrK.sys
2007-11-26 15:23 --------- d-----w C:\Program Files\Electronic Arts
2007-11-23 20:24 --------- d-----w C:\Program Files\OO Software
2007-11-20 15:59 --------- d-----w C:\Program Files\Activision
2007-11-17 23:19 --------- d-----w C:\Program Files\Common Files\Real
2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2007-11-07 21:03 --------- d-----w C:\Program Files\ffdshow
2007-11-07 20:44 --------- d-----w C:\Program Files\DivX
2007-11-06 13:13 737,280 ----a-w C:\WINDOWS\iun6002.exe
2007-11-04 13:55 --------- d-----w C:\Program Files\NVIDIA Corporation
2007-10-26 23:09 118,784 ----a-w C:\WINDOWS\GREUninstall.exe
2006-05-03 09:06 163,328 --sha-r C:\WINDOWS\system32\flvDX.dll
2007-02-21 10:47 31,232 --sha-r C:\WINDOWS\system32\msfDX.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-17 14:49]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="RUNDLL32.exe" [2004-08-17 14:49 C:\WINDOWS\system32\rundll32.exe]
"NvMediaCenter"="RUNDLL32.exe" [2004-08-17 14:49 C:\WINDOWS\system32\rundll32.exe]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 13:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="LogonUI.EXE"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 13:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"UPS"=3 (0x3)
"TapiSrv"=3 (0x3)
"aspnet_state"=3 (0x3)
R1 fwdrv;Firewall Driver;C:\WINDOWS\system32\drivers\fwdrv.sys [2004-11-02 09:00]
R1 sp_rsdrv2;Spyware Terminator Driver 2;C:\WINDOWS\system32\drivers\sp_rsdrv2.sys [2007-12-25 23:10]
R3 Amps2prt;A4Tech PS/2 Port Mouse Driver;C:\WINDOWS\system32\DRIVERS\Amps2prt.sys [2006-05-09 17:27]
R3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet Controller;C:\WINDOWS\system32\DRIVERS\l151x86.sys [2007-07-03 12:06]
R3 PSched;Plánovač paketů technologie QoS;C:\WINDOWS\system32\DRIVERS\psched.sys [2004-08-03 22:04]
S3 axvbusx;axvbusx;C:\WINDOWS\system32\DRIVERS\axvbusx.sys []
S3 axvdkbus;axvdkbus;C:\WINDOWS\system32\DRIVERS\axvdkbus.sys []
S3 axvodka;axvodka;C:\WINDOWS\system32\DRIVERS\axvodka.sys []
S3 axvscsi;axvscsi;C:\WINDOWS\system32\DRIVERS\axvscsi.sys []
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3;C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe []
.
Contents of the 'Scheduled Tasks' folder
"2007-12-16 22:09:49 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
**************************************************************************
catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-12-27 12:58:23
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-12-27 12:59:09 - machine was rebooted [PC]
C:\ComboFix2.txt ... 2007-12-26 01:51
C:\ComboFix3.txt ... 2007-12-26 00:31
.
2007-12-27 10:56:14 --- E O F ---
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.1.1029.18.1563 [GMT 1:00]
Running from: C:\Documents and Settings\PC\Plocha\ComboFix.exe
.
((((((((((((((((((((((((( Files Created from 2007-11-27 to 2007-12-27 )))))))))))))))))))))))))))))))
.
2007-12-26 04:09 . 2007-12-27 12:30 <DIR> d-------- C:\VundoFix Backups
2007-12-26 03:06 . 2007-09-04 19:45 <DIR> d--h----- C:\Documents and Settings\Administrator\ćablony
2007-12-26 03:06 . 2007-12-16 22:28 <DIR> d-------- C:\Documents and Settings\Administrator\Plocha
2007-12-26 03:06 . 2007-12-26 03:06 <DIR> d---s---- C:\Documents and Settings\Administrator\Oblˇben‚ polo§ky
2007-12-26 03:06 . 2007-09-04 21:33 <DIR> dr------- C:\Documents and Settings\Administrator\Nabˇdka Start
2007-12-26 03:06 . 2007-09-04 21:33 <DIR> dr-h----- C:\Documents and Settings\Administrator\Data aplikacˇ
2007-12-26 01:54 . 2007-12-26 03:50 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2007-12-26 01:53 . 2007-12-26 01:53 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-12-26 00:51 . 2007-12-26 00:51 <DIR> d-------- C:\Program Files\Alwil Software
2007-12-26 00:50 . 2007-12-26 00:50 0 --a------ C:\WINDOWS\XXLGSC
2007-12-25 23:10 . 2007-12-25 23:10 138,624 --a------ C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
2007-12-25 23:08 . 2007-12-27 11:52 15,360 --a------ C:\WINDOWS\system32\ctfmon .exe
2007-12-25 23:01 . 2007-12-27 12:44 <DIR> d-------- C:\Program Files\WinClamAVShield
2007-12-25 21:52 . 2007-12-25 21:52 <DIR> d-------- C:\WINDOWS\system32\LogFiles
2007-12-25 21:05 . 2007-12-27 12:47 <DIR> d-------- C:\Program Files\Spyware Terminator
2007-12-25 19:51 . 2007-12-25 19:51 <DIR> d-------- C:\Program Files\The Adventure Company
2007-12-25 18:55 . 2007-12-25 18:55 <DIR> d-------- C:\WINDOWS\ppqvmpqr
2007-12-25 17:38 . 2007-12-25 17:38 <DIR> d-------- C:\WINDOWS\system32\URTTEMP
2007-12-25 17:34 . 2007-12-25 22:19 <DIR> d-------- C:\Program Files\Sony
2007-12-25 17:21 . 2007-12-25 23:47 <DIR> d-------- C:\Program Files\Sony Setup
2007-12-25 15:51 . 2007-12-25 15:51 <DIR> d-------- C:\Program Files\Microids
2007-12-21 20:52 . 2007-12-21 20:52 286,720 --------- C:\WINDOWS\Setup1.exe
2007-12-21 20:52 . 2007-12-21 20:52 73,216 --a------ C:\WINDOWS\ST6UNST.EXE
2007-12-21 17:06 . 2007-12-21 17:06 <DIR> d-------- C:\Downloads
2007-12-20 15:45 . 2007-12-20 15:45 <DIR> d-------- C:\Program Files\A4Tech
2007-12-20 00:15 . 2007-12-20 00:15 <DIR> d-------- C:\Program Files\TGTSoft
2007-12-20 00:09 . 2007-12-20 00:14 <DIR> d-------- C:\Program Files\StrokeIt
2007-12-19 21:27 . 2007-12-19 21:29 5,261 --a------ C:\WINDOWS\BricoPackFoldersDelete.cmd
2007-12-18 15:48 . 2007-12-18 15:48 395,744 --a------ C:\WINDOWS\system32\drivers\timntr.sys
2007-12-18 15:48 . 2007-12-18 15:48 39,264 --a------ C:\WINDOWS\system32\drivers\tifsfilt.sys
2007-12-18 15:27 . 2007-12-18 15:48 114,048 --a------ C:\WINDOWS\system32\drivers\snapman.sys
2007-12-18 09:04 . 2007-12-18 09:04 <DIR> d-------- C:\Program Files\WinAVI Video Converter
2007-12-17 22:52 . 2007-12-17 22:52 <DIR> d-------- C:\Program Files\ABCgames Cheater
2007-12-17 00:23 . 2007-12-17 00:27 <DIR> d-------- C:\Program Files\Wise Disk Cleaner
2007-12-16 23:46 . 2007-12-16 23:46 <DIR> d-------- C:\Program Files\Webteh
2007-12-16 23:09 . 2007-12-16 23:09 <DIR> d-------- C:\Program Files\Apple Software Update
2007-12-16 23:08 . 2007-12-16 23:08 <DIR> d-------- C:\Program Files\Common Files\Ulead
2007-12-16 23:08 . 2006-05-11 18:41 654 --------- C:\WINDOWS\remove.iss
2007-12-16 22:28 . 2007-12-16 22:28 <DIR> d-------- C:\Documents and Settings\Default User\Plocha
2007-12-16 22:27 . 2007-12-16 22:28 <DIR> d-------- C:\Program Files\CyberLink
2007-12-16 19:46 . 2006-04-29 14:25 40,960 --a------ C:\WINDOWS\system32\psfind.dll
2007-12-16 19:42 . 2007-12-16 19:42 <DIR> d-------- C:\Program Files\THQ
2007-12-15 13:18 . 2007-12-15 13:18 <DIR> d-------- C:\Program Files\VSO
2007-12-15 13:18 . 2006-09-29 11:24 217,127 --a------ C:\WINDOWS\system32\drv43260.dll
2007-12-15 13:18 . 2006-09-29 11:25 208,935 --a------ C:\WINDOWS\system32\drv33260.dll
2007-12-15 13:18 . 2006-09-29 11:26 176,165 --a------ C:\WINDOWS\system32\drv23260.dll
2007-12-15 13:18 . 2007-12-15 13:18 47,360 --a------ C:\WINDOWS\system32\drivers\pcouffin.sys
2007-12-15 11:11 . 2005-11-21 06:48 45,056 --a------ C:\WINDOWS\system32\WNASPI32.DLL
2007-12-15 11:11 . 2005-11-21 06:48 16,512 --a------ C:\WINDOWS\system32\drivers\ASPI32.SYS
2007-12-14 18:41 . 2007-12-14 18:42 <DIR> d-------- C:\Program Files\Luxor 3
2007-12-13 20:04 . 2007-12-13 20:04 <DIR> d-------- C:\Program Files\Activision Value
2007-12-10 19:46 . 2007-12-10 19:46 <DIR> d-------- C:\Program Files\Common Files\OKsoftware
2007-12-09 20:07 . 2007-12-09 20:07 <DIR> d-------- C:\Program Files\Free MP3 Sound Recorder
2007-12-09 20:07 . 2004-12-02 18:20 1,843,200 --a------ C:\WINDOWS\system32\NCTAudioFile2.dll
2007-12-09 20:07 . 2004-05-20 13:07 335,872 --a------ C:\WINDOWS\system32\NCTAudioVisualization2.dll
2007-12-09 20:07 . 2004-08-25 13:53 311,296 --a------ C:\WINDOWS\system32\NCTAudioRecord2.dll
2007-12-09 18:08 . 2007-10-04 17:14 136,260 --a------ C:\WINDOWS\system32\nvapps.nvb
2007-12-09 17:50 . 2007-10-04 18:16 356,352 --a------ C:\WINDOWS\system32\NVUNINST.EXE
2007-12-09 17:48 . 2007-12-09 17:48 <DIR> d-------- C:\WINDOWS\system32\WinFast
2007-12-09 17:45 . 2007-12-09 18:09 <DIR> d-------- C:\WINDOWS\nview
2007-12-09 17:45 . 2007-03-07 01:49 356,352 --a------ C:\WINDOWS\system32\nvudisp.exe
2007-12-09 17:45 . 2007-12-09 17:53 138,552 --a------ C:\WINDOWS\system32\nvapps.xml
2007-12-09 17:45 . 2007-10-04 17:14 17,525 --a------ C:\WINDOWS\system32\nvdisp.nvu
2007-12-07 15:25 . 2007-12-27 11:51 <DIR> d-------- C:\Program Files\DAEMON Tools
2007-12-06 21:25 . 2007-12-06 21:25 <DIR> d-------- C:\FLVPlayer
2007-12-06 16:34 . 2007-12-06 16:34 <DIR> d-------- C:\Program Files\Futuremark
2007-12-05 15:45 . 2005-03-25 18:24 9,600 --a------ C:\WINDOWS\system32\drivers\winfoxiobackup.sys
2007-12-05 15:41 . 2007-12-05 15:54 <DIR> d-------- C:\WINDOWS\system32\WinFox
2007-12-05 15:41 . 2005-03-25 18:24 9,600 --------- C:\WINDOWS\system32\drivers\WINFOXIO.sys
2007-11-29 21:06 . 2007-11-30 22:29 8 --a------ C:\WINDOWS\system32\nvModes.dat
2007-11-29 19:41 . 2007-12-19 21:28 3,888,054 --a------ C:\WINDOWS\BricoPack Wallpaper.bmp
2007-11-29 19:41 . 2007-12-19 21:29 71,326 --a------ C:\WINDOWS\BricoPackUninst.cmd
2007-11-29 19:39 . 2007-12-20 00:14 <DIR> d-------- C:\WINDOWS\BricoPacks
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-26 02:26 --------- d-----w C:\Program Files\NVIDIA
2007-12-25 15:28 --------- d-----w C:\Program Files\Call of Duty
2007-12-22 16:19 --------- d-----w C:\Program Files\Opera
2007-12-21 23:32 --------- d-----w C:\Program Files\Winamp
2007-12-21 20:32 --------- d-----w C:\Program Files\EurotelSMS
2007-12-19 20:45 76 ---ha-w C:\Program Files\Desktop.ini
2007-12-18 22:14 --------- d-----r C:\Program Files\ikony na plochu
2007-12-16 23:23 --------- d-----w C:\Program Files\Wise Registry Cleaner
2007-12-16 22:35 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-12-16 22:10 --------- d-----w C:\Program Files\QuickTime
2007-12-15 10:15 --------- d-----w C:\Program Files\Xilisoft
2007-12-14 14:42 --------- d-----w C:\Program Files\Sony Ericsson
2007-12-08 14:45 --------- d-----w C:\Program Files\7-Zip
2007-12-06 15:20 --------- d-----w C:\Program Files\OpenSSL
2007-11-26 17:34 --------- d-----w C:\Program Files\Rockstar Games
2007-11-26 17:21 22,328 ----a-w C:\WINDOWS\system32\drivers\PnkBstrK.sys
2007-11-26 15:23 --------- d-----w C:\Program Files\Electronic Arts
2007-11-23 20:24 --------- d-----w C:\Program Files\OO Software
2007-11-20 15:59 --------- d-----w C:\Program Files\Activision
2007-11-17 23:19 --------- d-----w C:\Program Files\Common Files\Real
2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2007-11-07 21:03 --------- d-----w C:\Program Files\ffdshow
2007-11-07 20:44 --------- d-----w C:\Program Files\DivX
2007-11-06 13:13 737,280 ----a-w C:\WINDOWS\iun6002.exe
2007-11-04 13:55 --------- d-----w C:\Program Files\NVIDIA Corporation
2007-10-26 23:09 118,784 ----a-w C:\WINDOWS\GREUninstall.exe
2006-05-03 09:06 163,328 --sha-r C:\WINDOWS\system32\flvDX.dll
2007-02-21 10:47 31,232 --sha-r C:\WINDOWS\system32\msfDX.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-17 14:49]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="RUNDLL32.exe" [2004-08-17 14:49 C:\WINDOWS\system32\rundll32.exe]
"NvMediaCenter"="RUNDLL32.exe" [2004-08-17 14:49 C:\WINDOWS\system32\rundll32.exe]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 13:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="LogonUI.EXE"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 13:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"UPS"=3 (0x3)
"TapiSrv"=3 (0x3)
"aspnet_state"=3 (0x3)
R1 fwdrv;Firewall Driver;C:\WINDOWS\system32\drivers\fwdrv.sys [2004-11-02 09:00]
R1 sp_rsdrv2;Spyware Terminator Driver 2;C:\WINDOWS\system32\drivers\sp_rsdrv2.sys [2007-12-25 23:10]
R3 Amps2prt;A4Tech PS/2 Port Mouse Driver;C:\WINDOWS\system32\DRIVERS\Amps2prt.sys [2006-05-09 17:27]
R3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet Controller;C:\WINDOWS\system32\DRIVERS\l151x86.sys [2007-07-03 12:06]
R3 PSched;Plánovač paketů technologie QoS;C:\WINDOWS\system32\DRIVERS\psched.sys [2004-08-03 22:04]
S3 axvbusx;axvbusx;C:\WINDOWS\system32\DRIVERS\axvbusx.sys []
S3 axvdkbus;axvdkbus;C:\WINDOWS\system32\DRIVERS\axvdkbus.sys []
S3 axvodka;axvodka;C:\WINDOWS\system32\DRIVERS\axvodka.sys []
S3 axvscsi;axvscsi;C:\WINDOWS\system32\DRIVERS\axvscsi.sys []
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3;C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe []
.
Contents of the 'Scheduled Tasks' folder
"2007-12-16 22:09:49 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
**************************************************************************
catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-12-27 12:58:23
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-12-27 12:59:09 - machine was rebooted [PC]
C:\ComboFix2.txt ... 2007-12-26 01:51
C:\ComboFix3.txt ... 2007-12-26 00:31
.
2007-12-27 10:56:14 --- E O F ---
- fredik
- člen Security týmu
-
Master Level 7
- Příspěvky: 4680
- Registrován: červenec 06
- Pohlaví:
- Stav:
Offline
Jdi přes Start -> Spustit... a napiš do okna tento příkaz označený modře ComboFix /u (mezi comobofix a /u musí být mezera) a dej Ok.
Smaž pak tento adresář/složku:
C:\VundoFix Backups
Podívej se do: C:\WINDOWS\system32 po tomto souboru:
ctfmon .exe
ctfmon.exe => měl by tam být jen ten bez mezery. Jen pro jistotu jestli je to jen chybka ve výpise nebo ne. Řekni jak to tam máš.
Dej sem ještě nový log z HJT a řekni jestli máš nějaké problémy.
Smaž pak tento adresář/složku:
C:\VundoFix Backups
Podívej se do: C:\WINDOWS\system32 po tomto souboru:
ctfmon .exe
ctfmon.exe => měl by tam být jen ten bez mezery. Jen pro jistotu jestli je to jen chybka ve výpise nebo ne. Řekni jak to tam máš.
Dej sem ještě nový log z HJT a řekni jestli máš nějaké problémy.
Díky ti za vše. Zdá se to být ok. Mám jen ctfmon.exe. Posílám ti ještě ten log
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:13:50, on 27.12.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PROGRA~1\SPYWAR~1\sp_rsser.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Seznam\Postak\Postak.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\Opera\Opera.exe
E:\PROGRAMY\antiviry\uklid\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\TRANSLAT\WEBIE.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Kwyshell MidpX BHO - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\TRANSLAT\WEBIE.DLL
O3 - Toolbar: Kwyshell MidpX - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SMail] "C:\Program Files\Seznam\Postak\Postak.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O8 - Extra context menu item: Link to &MidpX - C:\Program Files\Kwyshell\MidpX\JadInvoker\Extent\jad_wrap.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{E6638AE6-88D5-437C-B1B3-673B7301FD0C}: NameServer = 192.168.2.133,217.197.144.4
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Spyware Terminator Clam Service (sp_clamsrv) - Crawler.com - C:\Program Files\WinClamAVShield\sp_clamsrv.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\PROGRA~1\SPYWAR~1\sp_rsser.exe
--
End of file - 5165 bytes
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:13:50, on 27.12.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PROGRA~1\SPYWAR~1\sp_rsser.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Seznam\Postak\Postak.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\Opera\Opera.exe
E:\PROGRAMY\antiviry\uklid\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\TRANSLAT\WEBIE.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Kwyshell MidpX BHO - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\TRANSLAT\WEBIE.DLL
O3 - Toolbar: Kwyshell MidpX - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SMail] "C:\Program Files\Seznam\Postak\Postak.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O8 - Extra context menu item: Link to &MidpX - C:\Program Files\Kwyshell\MidpX\JadInvoker\Extent\jad_wrap.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\TRANSLAT\WEBIE.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{E6638AE6-88D5-437C-B1B3-673B7301FD0C}: NameServer = 192.168.2.133,217.197.144.4
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Spyware Terminator Clam Service (sp_clamsrv) - Crawler.com - C:\Program Files\WinClamAVShield\sp_clamsrv.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\PROGRA~1\SPYWAR~1\sp_rsser.exe
--
End of file - 5165 bytes
- fredik
- člen Security týmu
-
Master Level 7
- Příspěvky: 4680
- Registrován: červenec 06
- Pohlaví:
- Stav:
Offline
Vypni si v nastavení Spyware Terminator integraci ClamAntiviru a zastav jeho službu:
Tuto službu zastav, měla by se jmenovat: Spyware Terminator Clam Service
O23 - Service: Spyware Terminator Clam Service (sp_clamsrv) - Crawler.com - C:\Program Files\WinClamAVShield\sp_clamsrv.exe
Start -> Spustit... - > otevře se ti okno kde do volného řádku napiš services.msc a dej OK. Otevře se ti okno Služby.
V ní ji najdi a ve vlastnostech ji zastav (klikni na tlačítko Zastavit) a nastav Typ spouštění: na Zakázáno.
Log je v pořádku, nemáš za co
Tuto službu zastav, měla by se jmenovat: Spyware Terminator Clam Service
O23 - Service: Spyware Terminator Clam Service (sp_clamsrv) - Crawler.com - C:\Program Files\WinClamAVShield\sp_clamsrv.exe
Start -> Spustit... - > otevře se ti okno kde do volného řádku napiš services.msc a dej OK. Otevře se ti okno Služby.
V ní ji najdi a ve vlastnostech ji zastav (klikni na tlačítko Zastavit) a nastav Typ spouštění: na Zakázáno.
Log je v pořádku, nemáš za co

Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 70 hostů