prosím o kontrolu logu :)

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
iMohos
Level 3.5
Level 3.5
Příspěvky: 745
Registrován: prosinec 07
Bydliště: Praha 8
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu :)

Příspěvekod iMohos » 03 led 2010 21:48

Ten ESET se mi nepodařilo vypnout ani přes procesy,nebyl tam :-(

ComboFix 10-01-02.05 - FazyCZ 03.01.2010 21:36:29.1.1 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2047.1353 [GMT 1:00]
Spuštěný z: c:\users\FazyCZ\Desktop\ComboFix.exe
AV: ESET Smart Security 3.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET Personal firewall *enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
SP: ESET Smart Security 3.0 *enabled* (Updated) {E5E70D32-0101-4B98-A4D6-D1D15C3BB448}
* Rezidentní štít AV je zapnutý

.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\install.exe
c:\windows\Downloaded Program Files\IDropPTB.dll

.
((((((((((((((((((((((((( Soubory vytvořené od 2009-12-03 do 2010-01-03 )))))))))))))))))))))))))))))))
.

2010-01-03 20:43 . 2010-01-03 20:44 -------- d-----w- c:\users\FazyCZ\AppData\Local\temp
2010-01-03 20:43 . 2010-01-03 20:43 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-01-03 14:41 . 2010-01-03 14:41 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
2010-01-03 14:41 . 2010-01-03 14:41 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Atari
2010-01-03 14:40 . 2010-01-03 14:40 -------- d-----w- c:\program files\Common Files\PocketSoft
2010-01-03 14:40 . 2002-02-27 17:50 197120 ----a-w- c:\windows\patchw32.dll
2010-01-03 14:35 . 2010-01-03 14:35 -------- d-----w- c:\program files\Atari
2010-01-02 20:11 . 2010-01-02 20:11 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Malwarebytes
2010-01-02 20:11 . 2009-12-30 13:55 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-02 20:11 . 2010-01-02 20:11 -------- d-----w- c:\programdata\Malwarebytes
2010-01-02 20:11 . 2009-12-30 13:54 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-02 20:11 . 2010-01-02 20:11 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-02 12:42 . 2010-01-02 12:42 -------- d-----w- C:\_OTL
2010-01-02 00:14 . 2010-01-02 00:14 -------- d-----w- c:\program files\MSXML 4.0
2009-12-31 21:01 . 2009-12-31 21:01 -------- d-----w- c:\users\FazyCZ\AppData\Local\Opera
2009-12-31 21:00 . 2010-01-01 23:28 -------- d-----w- c:\program files\Opera
2009-12-31 13:24 . 2009-12-31 13:24 10134 ----a-r- c:\users\FazyCZ\AppData\Roaming\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
2009-12-31 13:24 . 2009-12-31 13:24 -------- d-----w- c:\program files\Microsoft WSE
2009-12-31 13:23 . 2009-12-31 15:16 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Autodesk
2009-12-31 13:22 . 2009-12-31 13:42 -------- d-----w- c:\users\FazyCZ\AppData\Local\Autodesk
2009-12-31 13:22 . 2009-12-31 13:42 -------- d-----w- c:\programdata\Autodesk
2009-12-31 13:22 . 2009-12-31 13:23 -------- d-----w- c:\program files\DWG TrueView 2010
2009-12-31 13:19 . 2009-12-31 13:51 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2009-12-31 13:19 . 2009-12-31 13:58 -------- d-----w- c:\program files\Autodesk
2009-12-31 12:53 . 2009-12-31 12:57 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\FileZilla
2009-12-31 12:53 . 2009-12-31 12:53 -------- d-----w- c:\program files\FileZilla FTP Client
2009-12-29 18:41 . 2009-12-29 18:41 -------- d-----w- c:\users\FazyCZ\AppData\Local\Criterion Games
2009-12-29 17:21 . 2009-12-29 17:21 -------- d-----w- c:\program files\Electronic Arts
2009-12-27 12:29 . 2009-12-29 17:17 -------- d-----w- c:\users\FazyCZ\Other
2009-12-27 10:45 . 2009-12-27 10:45 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Creative
2009-12-27 10:40 . 2009-12-28 09:38 -------- d-----w- c:\programdata\Creative
2009-12-27 10:40 . 2009-12-27 10:40 -------- d--h--w- c:\programdata\{615DB4DC-B7C1-4125-9858-78EF460B76D2}
2009-12-27 10:40 . 2009-12-27 10:40 2422433 ----a-w- c:\programdata\{615DB4DC-B7C1-4125-9858-78EF460B76D2}\setup.exe
2009-12-27 10:39 . 2009-03-30 09:04 2597340 ----a-w- c:\programdata\{9BA38AC8-8A1E-463A-97ED-AE291D3E1A06}\Setup.exe
2009-12-27 10:39 . 2010-01-02 09:44 -------- d-----w- c:\program files\Creative
2009-12-27 10:39 . 2009-12-27 10:39 -------- d--h--w- c:\programdata\{9BA38AC8-8A1E-463A-97ED-AE291D3E1A06}
2009-12-26 17:18 . 2009-12-30 09:57 -------- d-----w- c:\program files\EVGA Precision
2009-12-26 08:55 . 2009-12-26 08:58 -------- d-----w- c:\users\FazyCZ\Nová složka (3)
2009-12-25 12:28 . 2009-12-27 14:30 -------- d-----w- c:\users\FazyCZ\AppData\Local\NFS Underground 2
2009-12-24 09:47 . 2008-01-07 13:29 352 ---ha-w- c:\windows\nod32fixtemdono.reg
2009-12-24 09:27 . 2009-12-24 09:27 -------- d-----w- c:\program files\ESET
2009-12-23 16:00 . 2009-11-20 18:18 4990056 ----a-w- c:\windows\system32\NVStWiz.exe
2009-12-23 11:47 . 2009-12-23 11:49 -------- d-----w- c:\users\FazyCZ\zaloha
2009-12-21 13:38 . 2009-12-21 13:38 -------- d-----w- C:\Autodesk
2009-12-20 22:16 . 2009-12-20 22:16 -------- d-----w- c:\program files\CPUID
2009-12-20 22:16 . 2009-03-27 00:16 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2009-12-20 13:38 . 2009-12-20 13:38 -------- d-----w- c:\program files\oZone3D
2009-12-17 19:04 . 2010-01-01 23:26 -------- d-----w- C:\games
2009-12-17 18:56 . 2009-12-18 13:54 -------- d-----w- c:\program files\EA GAMES
2009-12-14 20:19 . 2009-12-30 21:18 -------- d-----w- c:\programdata\Codemasters
2009-12-14 20:10 . 2009-07-13 18:04 839680 ----a-w- c:\windows\system32\mkl_vml_p4.dll
2009-12-14 20:10 . 2009-07-13 18:04 532480 ----a-w- c:\windows\system32\mkl_vml_p3.dll
2009-12-14 20:10 . 2009-07-13 18:04 512000 ----a-w- c:\windows\system32\mkl_vml_def.dll
2009-12-14 20:10 . 2009-07-13 18:04 3485696 ----a-w- c:\windows\system32\mkl_p4.dll
2009-12-14 20:10 . 2009-07-13 18:04 2793472 ----a-w- c:\windows\system32\mkl_p3.dll
2009-12-14 20:10 . 2009-07-13 18:04 2125824 ----a-w- c:\windows\system32\mkl_lapack64.dll
2009-12-14 20:10 . 2009-10-16 10:19 872448 ----a-w- c:\windows\system32\rapture3d_oal.dll
2009-12-14 20:10 . 2009-07-13 18:04 2441216 ----a-w- c:\windows\system32\mkl_def.dll
2009-12-14 20:10 . 2009-07-13 18:04 2174976 ----a-w- c:\windows\system32\mkl_lapack32.dll
2009-12-14 20:10 . 2009-07-13 18:04 184320 ----a-w- c:\windows\system32\libguide40.dll
2009-12-14 20:10 . 2009-12-14 20:10 -------- d-----w- c:\program files\BRS
2009-12-14 20:09 . 2009-12-30 19:11 -------- d-----w- c:\program files\OpenAL
2009-12-11 14:28 . 2009-12-27 19:31 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\dvdcss
2009-12-09 20:07 . 2009-12-30 18:49 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\vlc
2009-12-09 20:06 . 2009-12-09 20:06 -------- d-----w- c:\program files\VideoLAN
2009-12-09 20:05 . 2009-12-09 20:11 -------- d-----w- C:\Root
2009-12-09 19:40 . 2009-12-09 19:40 -------- d-----w- c:\program files\Microsoft Works
2009-12-09 19:39 . 2009-12-09 19:39 -------- d-----w- c:\windows\PCHEALTH
2009-12-09 19:39 . 2009-12-09 19:39 -------- d-----w- c:\program files\Microsoft.NET
2009-12-09 19:36 . 2009-12-09 19:36 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-12-09 19:36 . 2009-12-09 19:36 -------- d-----w- c:\users\FazyCZ\AppData\Local\Microsoft Help
2009-12-09 19:36 . 2009-12-09 19:52 -------- d-----w- c:\programdata\Microsoft Help
2009-12-09 19:34 . 2009-12-09 19:34 -------- d-----r- C:\MSOCache
2009-12-09 19:11 . 2009-12-10 19:19 -------- d-----w- c:\users\FazyCZ\Elastomania
2009-12-08 18:46 . 2009-12-08 18:46 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\DAEMON Tools Pro
2009-12-07 20:55 . 2009-12-07 20:55 -------- d-----w- c:\windows\Sun
2009-12-07 20:24 . 2009-12-07 20:24 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Leadertech
2009-12-05 19:27 . 2009-10-11 03:17 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-12-05 19:27 . 2009-12-06 09:07 -------- d-----w- c:\program files\Java

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-03 20:42 . 2009-07-14 08:44 622422 ----a-w- c:\windows\system32\perfh005.dat
2010-01-03 20:42 . 2009-07-14 08:44 118604 ----a-w- c:\windows\system32\perfc005.dat
2010-01-03 20:35 . 2009-11-07 16:15 -------- d-----w- c:\programdata\NVIDIA
2010-01-03 20:30 . 2009-11-29 13:40 -------- d-----w- c:\program files\Trillian
2010-01-03 18:28 . 2009-11-07 17:05 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\AIMP
2010-01-03 14:52 . 2009-11-12 17:58 -------- d-----w- c:\program files\Mystiq.org Counter-Strike 1.6
2010-01-03 14:35 . 2009-11-07 16:17 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-03 12:17 . 2009-11-15 11:26 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\uTorrent
2010-01-01 23:30 . 2009-11-16 14:47 -------- d-----w- c:\program files\Sanny Builder 3
2009-12-31 15:18 . 2009-11-26 17:37 -------- d-----w- c:\programdata\FLEXnet
2009-12-31 15:02 . 2009-11-07 16:10 160368 ----a-w- c:\users\FazyCZ\AppData\Local\GDIPFONTCACHEV1.DAT
2009-12-30 18:56 . 2009-11-07 18:07 -------- d-----w- c:\program files\Codemasters
2009-12-29 21:17 . 2009-07-14 04:52 -------- d-----w- c:\program files\Microsoft Games
2009-12-29 21:17 . 2009-07-14 04:52 -------- d-----w- c:\program files\Windows Sidebar
2009-12-29 15:42 . 2009-11-11 14:35 -------- d-----w- c:\program files\Common Files\Apple
2009-12-21 14:41 . 2009-11-14 12:21 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2009-12-21 14:40 . 2009-11-23 13:37 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2009-12-21 14:20 . 2009-12-02 16:12 -------- d-----w- c:\program files\Need for Speed - Shift
2009-12-19 17:35 . 2009-11-16 12:34 138464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2009-12-19 17:35 . 2009-11-16 12:19 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2009-12-19 17:35 . 2009-11-16 12:34 111928 ----a-w- c:\windows\system32\PnkBstrB.exe
2009-12-19 11:34 . 2009-11-13 16:04 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2009-12-18 14:59 . 2009-11-13 16:04 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2009-12-17 18:50 . 2009-07-14 04:52 -------- d-----w- c:\program files\DVD Maker
2009-12-14 20:09 . 2009-11-07 17:25 445016 ----a-w- c:\windows\system32\wrap_oal.dll
2009-12-14 20:09 . 2009-11-07 17:25 109144 ----a-w- c:\windows\system32\OpenAL32.dll
2009-12-09 20:05 . 2009-11-16 12:46 -------- d-----w- c:\program files\Activision
2009-12-09 19:40 . 2009-07-14 04:52 -------- d-----w- c:\program files\MSBuild
2009-12-06 21:02 . 2009-11-07 18:12 -------- d-----w- c:\program files\CSS
2009-12-06 13:08 . 2009-11-25 20:37 -------- d-----w- c:\program files\Steam
2009-12-06 09:17 . 2009-11-08 09:01 -------- d-----w- c:\program files\LFS
2009-12-03 16:45 . 2009-11-29 13:41 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Trillian
2009-12-01 16:27 . 2009-12-01 16:26 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\MyPhoneExplorer
2009-12-01 16:26 . 2009-12-01 16:26 -------- d-----w- c:\program files\MyPhoneExplorer
2009-12-01 16:11 . 2009-12-01 16:11 -------- d-----w- c:\program files\Sierra
2009-11-29 14:40 . 2009-11-29 14:40 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Stardock
2009-11-29 14:39 . 2009-11-29 14:39 -------- dc-h--w- c:\programdata\{A87EB928-0C6C-4071-AEF1-59E32BAEDF1B}
2009-11-29 14:39 . 2009-11-29 14:39 -------- d-----w- c:\program files\Stardock
2009-11-28 10:26 . 2009-11-07 17:35 -------- d-----w- c:\program files\Left 4 Dead
2009-11-27 12:32 . 2009-11-26 16:28 -------- d-----w- c:\program files\Common Files\Adobe
2009-11-26 18:59 . 2009-11-07 17:20 -------- d-----w- c:\program files\Futuremark
2009-11-26 18:46 . 2009-11-07 16:15 -------- d-----w- c:\program files\NVIDIA Corporation
2009-11-26 17:42 . 2009-11-25 20:37 -------- d-----w- c:\program files\Common Files\Steam
2009-11-26 17:33 . 2009-11-26 17:33 -------- d-----w- c:\programdata\ALM
2009-11-26 17:23 . 2009-11-26 17:23 -------- d-----w- c:\program files\Adobe Media Player
2009-11-26 17:22 . 2009-11-26 17:22 -------- d-----w- c:\program files\Common Files\Adobe AIR
2009-11-26 17:19 . 2009-11-26 17:19 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2009-11-20 19:33 . 2009-11-20 19:33 812648 ----a-w- c:\windows\system32\nvsvc.dll
2009-11-20 19:33 . 2009-11-20 19:33 1323624 ----a-w- c:\windows\system32\nvsvcr.dll
2009-11-20 19:33 . 2009-11-20 19:33 12685928 ----a-w- c:\windows\system32\nvcpl.dll
2009-11-20 19:33 . 2009-11-20 19:33 122984 ----a-w- c:\windows\system32\nvvsvc.exe
2009-11-20 19:33 . 2009-11-20 19:33 110184 ----a-w- c:\windows\system32\nvmctray.dll
2009-11-19 20:42 . 2009-11-07 16:14 592488 ----a-w- c:\windows\system32\nvuninst.exe
2009-11-19 13:14 . 2009-11-12 18:36 -------- d-----w- c:\program files\Rockstar Games
2009-11-16 13:09 . 2009-11-16 12:20 22328 ----a-w- c:\users\FazyCZ\AppData\Roaming\PnkBstrK.sys
2009-11-16 13:09 . 2009-11-16 12:20 22328 ----a-w- c:\users\FazyCZ\AppData\Roaming\PnkBstrK.sys
2009-11-15 11:28 . 2009-11-15 11:28 -------- d-----w- c:\program files\uTorrent
2009-11-14 14:12 . 2009-11-14 14:12 -------- d-----w- c:\program files\AMD
2009-11-13 23:39 . 2009-11-13 23:39 -------- d-----w- c:\programdata\Futuremark
2009-11-13 23:35 . 2009-11-13 23:35 -------- d-----w- c:\program files\Common Files\Futuremark Shared
2009-11-12 20:40 . 2009-11-12 20:40 -------- d-----w- c:\program files\BreakPoint Software
2009-11-12 20:13 . 2009-11-12 19:11 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2009-11-12 19:13 . 2009-11-09 20:02 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-11-12 16:42 . 2009-11-12 16:42 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2009-11-11 14:38 . 2009-11-11 14:37 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Apple Computer
2009-11-11 14:36 . 2009-11-11 14:36 -------- d-----w- c:\programdata\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-11-11 14:36 . 2009-11-11 14:36 -------- d-----w- c:\program files\iTunes
2009-11-11 14:36 . 2009-11-11 14:36 -------- d-----w- c:\program files\iPod
2009-11-11 14:36 . 2009-11-11 14:35 -------- d-----w- c:\programdata\Apple Computer
2009-11-11 14:36 . 2009-11-11 14:35 -------- d-----w- c:\program files\QuickTime
2009-11-11 14:35 . 2009-11-11 14:35 -------- d-----w- c:\program files\Apple Software Update
2009-11-11 14:35 . 2009-11-11 14:35 -------- d-----w- c:\programdata\Apple
2009-11-11 14:29 . 2009-11-11 14:29 -------- d-----w- c:\program files\TuneUp Utilities 2010
2009-11-11 14:29 . 2009-11-11 14:29 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\TuneUp Software
2009-11-11 14:29 . 2009-11-11 14:28 -------- d-----w- c:\programdata\TuneUp Software
2009-11-11 14:28 . 2009-11-11 14:28 -------- d-sh--w- c:\programdata\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2009-11-09 20:02 . 2009-11-09 20:02 -------- d--h--r- c:\users\FazyCZ\AppData\Roaming\SecuROM
2009-11-09 19:50 . 2009-11-09 19:50 -------- d-----w- c:\program files\Aspyr
2009-11-09 17:43 . 2009-11-09 17:43 -------- d-----w- c:\program files\Alchemy Elixir
2009-11-08 16:48 . 2009-11-08 16:48 0 ----a-w- c:\windows\nsreg.dat
2009-11-07 20:37 . 2009-11-07 16:14 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-11-07 17:35 . 2009-11-07 17:35 -------- d-----w- c:\program files\Doom 3
2009-11-07 17:30 . 2009-11-07 17:26 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\DAEMON Tools Lite
2009-11-07 17:28 . 2009-11-07 17:28 -------- d-----w- c:\programdata\DAEMON Tools Lite
2009-11-07 17:28 . 2009-11-07 17:28 -------- d-----w- c:\program files\DAEMON Tools Lite
2009-11-07 17:26 . 2009-11-07 17:26 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-11-07 17:19 . 2009-11-07 17:19 -------- d-----w- c:\program files\CCleaner
2009-11-07 17:05 . 2009-11-07 17:05 -------- d-----w- c:\program files\AIMP2
2009-11-07 16:17 . 2009-11-07 16:17 -------- d-----w- c:\program files\Realtek AC97
2009-11-07 16:17 . 2009-11-07 16:17 319488 ----a-w- c:\windows\HideWin.exe
2009-11-07 16:17 . 2009-11-07 16:17 -------- d-----w- c:\program files\Common Files\InstallShield
2009-11-07 16:16 . 2009-11-07 16:16 -------- d-----w- c:\program files\Lavalys
2009-11-07 16:15 . 2009-11-07 16:14 -------- d-----w- c:\program files\AGEIA Technologies
2009-11-07 16:07 . 2009-11-07 16:07 -------- d-sh--we c:\programdata\Plocha
2009-11-07 16:07 . 2009-11-07 16:07 -------- d-sh--we c:\programdata\Oblíbené položky
2009-11-07 16:07 . 2009-11-07 16:07 -------- d-sh--we c:\programdata\Šablony
2009-11-07 16:07 . 2009-11-07 16:07 -------- d-sh--we c:\programdata\Nabídka Start
2009-11-07 16:07 . 2009-11-07 16:07 -------- d-sh--we c:\programdata\Dokumenty
2009-11-07 16:07 . 2009-11-07 16:07 -------- d-sh--we c:\programdata\Data aplikací
2009-11-07 16:04 . 2009-11-07 16:04 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2009-04-23 691656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [2009-04-14 604704]
"K3805"="c:\program files\Alchemy Elixir\control.exe" [2008-10-23 237568]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2007-12-21 1443072]
"EVGAPrecision"="c:\program files\EVGA Precision\EVGAPrecisionWrapper.exe" [2009-04-15 44048]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Alchemy Elixir.lnk - c:\program files\Alchemy Elixir\traicon.exe [2009-11-9 126976]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\SharedTaskScheduler]
"{1984DD45-52CF-49cd-AB77-18F378FEA264}"= "c:\program files\Stardock\Fences\FencesMenu.dll" [2009-10-02 128360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer"=wdmaud.drv

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2007-08-24 06:00 33648 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"RGSC"=c:\program files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
"Steam"="c:\program files\steam\steam.exe" -silent
"SoftAuto.exe"="c:\program files\Creative\Software Update 3\SoftAuto.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" -atboottime
"Adobe Acrobat Speed Launcher"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
"Acrobat Assistant 8.0"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
"Adobe_ID0ENQBO"=c:\progra~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe"

R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\System32\drivers\vwififlt.sys [14.7.2009 0:52 48128]
R2 cpuz132;cpuz132;c:\windows\System32\drivers\cpuz132_x32.sys [20.12.2009 23:16 12672]
R2 ekrn;Eset Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [21.12.2007 8:21 468224]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [14.10.2009 7:24 10064]
S0 sptd;sptd;c:\windows\System32\drivers\sptd.sys [7.11.2009 18:26 721904]
S3 Adobe Version Cue CS4;Adobe Version Cue CS4;c:\program files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [15.8.2008 5:46 284016]
S3 CTUPnPSv;Creative Centrale Media Server;c:\program files\Creative\Creative Centrale\CTUPnPSv.exe [21.5.2008 12:42 64000]
S3 ElanFltr;Alchemy Elixir;c:\windows\System32\drivers\ElanFltr.sys [9.11.2009 18:43 42880]
S3 KMWDFILTERx86;HIDServiceDesc;c:\windows\System32\drivers\KMWDFILTER.sys [29.4.2009 15:37 25088]
S3 netr73;ASUS USB - ovladač karty pro bezdrátovou síť LAN pro systém Windows Vista;c:\windows\System32\drivers\netr73.sys [10.6.2009 22:18 545792]
S3 RTCore32;RTCore32;c:\program files\EVGA Precision\RTCore32.sys [25.5.2005 19:39 4608]
S3 s816bus;Sony Ericsson Device 816 driver (WDM);c:\windows\System32\drivers\s816bus.sys [12.11.2009 17:39 81832]
S3 s816mdfl;Sony Ericsson Device 816 USB WMC Modem Filter;c:\windows\System32\drivers\s816mdfl.sys [12.11.2009 17:39 13864]
S3 s816mdm;Sony Ericsson Device 816 USB WMC Modem Driver;c:\windows\System32\drivers\s816mdm.sys [12.11.2009 17:39 107304]
S3 s816mgmt;Sony Ericsson Device 816 USB WMC Device Management Drivers (WDM);c:\windows\System32\drivers\s816mgmt.sys [12.11.2009 17:39 99112]
S3 s816obex;Sony Ericsson Device 816 USB WMC OBEX Interface;c:\windows\System32\drivers\s816obex.sys [12.11.2009 17:39 97320]
S3 s816unic;Sony Ericsson Device 816 USB Ethernet Emulation SEMCMR7 (WDM);c:\windows\System32\drivers\s816unic.sys [12.11.2009 17:39 97704]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS FontCache fdrespub AppIDSvc QWAVE wcncsvc SensrSvc

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Převést cíl vazby do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Převést do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: Připojit cíl vazby k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Připojit k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
FF - ProfilePath - c:\users\FazyCZ\AppData\Roaming\Mozilla\Firefox\Profiles\yhy7bwdy.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/?#obsah
FF - plugin: c:\program files\NVIDIA Corporation\3D Vision\npnv3dv.dll

---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 2
FF - user.js: nglayout.initialpaint.delay - 750
FF - user.js: content.notify.interval - 750000
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.switch.threshold - 750000
FF - user.js: network.http.max-connections-per-server - 4
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

AddRemove-DAEMON Tools Toolbar - c:\program files\DAEMON Tools Toolbar\uninst.exe


.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_USERS\S-1-5-21-1057476104-4051501317-3611337506-1000\Software\SecuROM\License information*]
"datasecu"=hex:d6,92,ba,7b,80,98,5a,c6,78,89,0b,00,df,74,d4,b9,5d,81,1c,d6,56,
76,a2,68,c9,29,64,20,30,0c,a0,66,51,99,64,6d,fc,ba,a7,16,0a,93,83,f4,e0,83,\
"rkeysecu"=hex:8d,b8,91,ea,68,be,f5,96,13,ef,0e,87,cb,62,26,2c

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-01-03 21:46:16
ComboFix-quarantined-files.txt 2010-01-03 20:46

Před spuštěním: Volných bajtů: 226 989 989 888
Po spuštění: Volných bajtů: 226 894 123 008

- - End Of File - - A97B478B80CD97D86E5BE82CBFC471B2
MB:ASUS M4A77TD | CPU : AMD Phenom II X4 3,2GHz@4,12 + Noctua NH-D14 |GK : MSI GTX560Ti TwinFrozrII OC @925/2100/1850 | RAM : 2x2GB DDR3 Zeppelin 1300MHz + 2x2GB OCZ LV 1300MHz | HDD : SSD OCZ Vexter4 120GB + Segate Barracuda 7200.12 500GB + WD AASD 500GB | PwR : OCZ Fatal1ty 550W | Case : Fractal Define R3

Reklama
pitimir
Level 3.5
Level 3.5
Příspěvky: 850
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :)

Příspěvekod pitimir » 04 led 2010 08:51

Stiahni a spust AVPTool. Vypracuj log podla navodu a vloz ho.
Nemam rad amaterizmus...

A adresat odkazu to vie :)

Uživatelský avatar
iMohos
Level 3.5
Level 3.5
Příspěvky: 745
Registrován: prosinec 07
Bydliště: Praha 8
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu :)

Příspěvekod iMohos » 05 led 2010 06:47

Autoscan: completed 6 hours ago (events: 2, objects: 1344630, time: 06:50:34)
4.1.2010 17:53:52 Task started
5.1.2010 0:44:26 Task completed

:D
MB:ASUS M4A77TD | CPU : AMD Phenom II X4 3,2GHz@4,12 + Noctua NH-D14 |GK : MSI GTX560Ti TwinFrozrII OC @925/2100/1850 | RAM : 2x2GB DDR3 Zeppelin 1300MHz + 2x2GB OCZ LV 1300MHz | HDD : SSD OCZ Vexter4 120GB + Segate Barracuda 7200.12 500GB + WD AASD 500GB | PwR : OCZ Fatal1ty 550W | Case : Fractal Define R3

pitimir
Level 3.5
Level 3.5
Příspěvky: 850
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :)

Příspěvekod pitimir » 05 led 2010 10:09

Nuz...to je dan za kvalitu :)
Este ta poprosimo logy z DDS a spravime este jeden skriptik do CF...a snad to bude cele:

Stiahni DDS. Uloz na plochu, ukonci vsetky spustene programy a spust ho. Po skonceni scanu sa otvoria vysledky v 2 oknach - DDS.txt a Attach.txt. Obsah oboch by som rad videl.
Nemam rad amaterizmus...

A adresat odkazu to vie :)

Uživatelský avatar
iMohos
Level 3.5
Level 3.5
Příspěvky: 745
Registrován: prosinec 07
Bydliště: Praha 8
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu :)

Příspěvekod iMohos » 05 led 2010 20:58

Tak se mi to stáhlo jako Autodesk Script a kdyz to otevru tak se mi to otevře v notepadu. Mam tomu nějak změnit koncovku třeba na .exe ? Takhle natvrdo to asi nepujde :D
MB:ASUS M4A77TD | CPU : AMD Phenom II X4 3,2GHz@4,12 + Noctua NH-D14 |GK : MSI GTX560Ti TwinFrozrII OC @925/2100/1850 | RAM : 2x2GB DDR3 Zeppelin 1300MHz + 2x2GB OCZ LV 1300MHz | HDD : SSD OCZ Vexter4 120GB + Segate Barracuda 7200.12 500GB + WD AASD 500GB | PwR : OCZ Fatal1ty 550W | Case : Fractal Define R3

pitimir
Level 3.5
Level 3.5
Příspěvky: 850
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :)

Příspěvekod pitimir » 06 led 2010 20:06

Skor .com, pripadne mozes skusit .pif :)
Potom by to malo fungovat.
Nemam rad amaterizmus...

A adresat odkazu to vie :)

Uživatelský avatar
iMohos
Level 3.5
Level 3.5
Příspěvky: 745
Registrován: prosinec 07
Bydliště: Praha 8
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu :)

Příspěvekod iMohos » 06 led 2010 20:27

Na .pif už to jede :)


DDS (Ver_09-12-01.01) - NTFSx86
Run by FazyCZ at 20:20:33,04 on st 06.01.2010
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_17
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2047.1095 [GMT 1:00]

AV: ESET Smart Security 3.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
SP: ESET Smart Security 3.0 *enabled* (Updated) {E5E70D32-0101-4B98-A4D6-D1D15C3BB448}
FW: ESET Personal firewall *enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\SOUNDMAN.EXE
C:\Program Files\Alchemy Elixir\Control.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Alchemy Elixir\traicon.exe
C:\Program Files\EVGA Precision\EVGAPrecision.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskeng.exe
C:\Program Files\Creative\Shared Files\CTDevSrv.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Fraps\fraps.exe
C:\Windows\system32\PnkBstrA.exe
C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
C:\Program Files\EVGA Precision\Bundle\OSDServer\RTSS.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Trillian\trillian.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\System32\rundll32.exe
C:\Program Files\AIMP2\AIMP2.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\WUDFHost.exe
C:\Users\FazyCZ\Desktop\dds.pif
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\daemon.exe" -autorun
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [K3805] "c:\program files\alchemy elixir\control.exe"
mRun: [egui] "c:\program files\eset\eset smart security\egui.exe" /hide /waitservice
mRun: [EVGAPrecision] "c:\program files\evga precision\EVGAPrecisionWrapper.exe" /s
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\alchem~1.lnk - c:\program files\alchemy elixir\traicon.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: Převést cíl vazby do Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Převést do Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECapture.html
IE: Připojit cíl vazby k existujícímu PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Připojit k existujícímu PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppend.html
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
STS: FencesShlExt Class: {1984dd45-52cf-49cd-ab77-18f378fea264} - c:\program files\stardock\fences\FencesMenu.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll

================= FIREFOX ===================

FF - ProfilePath - c:\users\fazycz\appdata\roaming\mozilla\firefox\profiles\yhy7bwdy.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/?#obsah
FF - plugin: c:\program files\nvidia corporation\3d vision\npnv3dv.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}

---- FIREFOX POLICIES ----
FF - user.js: network.http.max-persistent-connections-per-server - 2
FF - user.js: nglayout.initialpaint.delay - 750
FF - user.js: content.notify.interval - 750000
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.switch.threshold - 750000
FF - user.js: network.http.max-connections-per-server - 4
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.default.XMLHttpRequest.channel", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.jit.chrome", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("security.checkloaduri", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("bidi.characterset", 1);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\defaults\pref\channel-prefs.js - pref("app.update.channel", "release");
c:\program files\mozilla firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");

============= SERVICES / DRIVERS ===============

R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 48128]
R2 cpuz132;cpuz132;c:\windows\system32\drivers\cpuz132_x32.sys [2009-12-20 12672]
R2 ekrn;Eset Service;c:\program files\eset\eset smart security\ekrn.exe [2007-12-21 468224]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\nvidia corporation\3d vision\nvSCPAPISvr.exe [2009-11-20 240232]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\tuneup utilities 2010\TuneUpUtilitiesService32.exe [2009-10-30 1021256]
R3 RTCore32;RTCore32;c:\program files\evga precision\RTCore32.sys [2005-5-25 4608]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\tuneup utilities 2010\TuneUpUtilitiesDriver32.sys [2009-10-14 10064]
S3 Adobe Version Cue CS4;Adobe Version Cue CS4;c:\program files\common files\adobe\adobe version cue cs4\server\bin\VersionCueCS4.exe [2008-8-15 284016]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 CTUPnPSv;Creative Centrale Media Server;c:\program files\creative\creative centrale\CTUPnPSv.exe [2008-5-21 64000]
S3 ElanFltr;Alchemy Elixir;c:\windows\system32\drivers\ElanFltr.sys [2009-11-9 42880]
S3 KMWDFILTERx86;HIDServiceDesc;c:\windows\system32\drivers\KMWDFILTER.sys [2009-4-29 25088]
S3 netr73;ASUS USB - ovladač karty pro bezdrátovou síť LAN pro systém Windows Vista;c:\windows\system32\drivers\netr73.sys [2009-6-10 545792]
S3 s816bus;Sony Ericsson Device 816 driver (WDM);c:\windows\system32\drivers\s816bus.sys [2009-11-12 81832]
S3 s816mdfl;Sony Ericsson Device 816 USB WMC Modem Filter;c:\windows\system32\drivers\s816mdfl.sys [2009-11-12 13864]
S3 s816mdm;Sony Ericsson Device 816 USB WMC Modem Driver;c:\windows\system32\drivers\s816mdm.sys [2009-11-12 107304]
S3 s816mgmt;Sony Ericsson Device 816 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\s816mgmt.sys [2009-11-12 99112]
S3 s816obex;Sony Ericsson Device 816 USB WMC OBEX Interface;c:\windows\system32\drivers\s816obex.sys [2009-11-12 97320]
S3 s816unic;Sony Ericsson Device 816 USB Ethernet Emulation SEMCMR7 (WDM);c:\windows\system32\drivers\s816unic.sys [2009-11-12 97704]

=============== Created Last 30 ================

2010-01-04 16:52:12 0 d-----w- c:\programdata\Kaspersky Lab
2010-01-03 20:46:20 0 d-sh--w- C:\$RECYCLE.BIN
2010-01-03 20:35:52 77312 ----a-w- c:\windows\MBR.exe
2010-01-03 20:35:50 98816 ----a-w- c:\windows\sed.exe
2010-01-03 20:35:50 261632 ----a-w- c:\windows\PEV.exe
2010-01-03 20:35:50 161792 ----a-w- c:\windows\SWREG.exe
2010-01-03 14:41:55 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
2010-01-03 14:41:11 0 d-----w- c:\users\fazycz\appdata\roaming\Atari
2010-01-03 14:40:03 197120 ----a-w- c:\windows\patchw32.dll
2010-01-03 14:40:03 0 d-----w- c:\program files\common files\PocketSoft
2010-01-03 14:35:52 0 d-----w- c:\program files\Atari
2010-01-02 20:11:33 0 d-----w- c:\users\fazycz\appdata\roaming\Malwarebytes
2010-01-02 20:11:28 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-02 20:11:26 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-02 20:11:26 0 d-----w- c:\programdata\Malwarebytes
2010-01-02 20:11:25 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-02 12:42:51 0 d-----w- C:\_OTL
2010-01-02 00:14:49 0 d-----w- c:\program files\MSXML 4.0
2009-12-31 13:24:46 0 d-----w- c:\program files\Microsoft WSE
2009-12-31 13:23:25 0 d-----w- c:\users\fazycz\appdata\roaming\Autodesk
2009-12-31 13:22:24 0 d-----w- c:\programdata\Autodesk
2009-12-31 13:22:23 0 d-----w- c:\program files\DWG TrueView 2010
2009-12-31 13:19:35 0 d-----w- c:\program files\common files\Autodesk Shared
2009-12-31 13:19:34 0 d-----w- c:\program files\Autodesk
2009-12-27 12:29:05 0 d-----w- c:\users\fazycz\Other
2009-12-27 10:40:17 0 d-----w- c:\programdata\Creative
2009-12-27 10:40:15 0 d--h--w- c:\programdata\{615DB4DC-B7C1-4125-9858-78EF460B76D2}
2009-12-27 10:39:41 0 d-----w- c:\program files\Creative
2009-12-27 10:39:29 0 d--h--w- c:\programdata\{9BA38AC8-8A1E-463A-97ED-AE291D3E1A06}
2009-12-26 17:18:35 0 d-----w- c:\program files\EVGA Precision
2009-12-26 08:55:59 0 d-----w- c:\users\fazycz\Nová složka (3)
2009-12-24 09:47:38 352 ---ha-w- c:\windows\nod32fixtemdono.reg
2009-12-24 09:46:04 0 d-----w- c:\users\fazycz\appdata\roaming\ESET
2009-12-24 09:27:29 0 d-----w- c:\program files\ESET
2009-12-23 16:00:55 4990056 ----a-w- c:\windows\system32\NVStWiz.exe
2009-12-23 11:47:19 0 d-----w- c:\users\fazycz\zaloha
2009-12-21 13:38:49 0 d-----w- C:\Autodesk
2009-12-20 22:16:22 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2009-12-20 22:16:22 0 d-----w- c:\program files\CPUID
2009-12-20 13:38:47 0 d-----w- c:\program files\oZone3D
2009-12-17 19:04:10 0 d-----w- C:\games
2009-12-17 18:56:16 0 d-----w- c:\program files\EA GAMES
2009-12-14 20:19:43 0 d-----w- c:\programdata\Codemasters
2009-12-14 20:10:30 839680 ----a-w- c:\windows\system32\mkl_vml_p4.dll
2009-12-14 20:10:30 532480 ----a-w- c:\windows\system32\mkl_vml_p3.dll
2009-12-14 20:10:30 512000 ----a-w- c:\windows\system32\mkl_vml_def.dll
2009-12-14 20:10:30 3485696 ----a-w- c:\windows\system32\mkl_p4.dll
2009-12-14 20:10:30 2793472 ----a-w- c:\windows\system32\mkl_p3.dll
2009-12-14 20:10:29 2125824 ----a-w- c:\windows\system32\mkl_lapack64.dll
2009-12-14 20:10:28 872448 ----a-w- c:\windows\system32\rapture3d_oal.dll
2009-12-14 20:10:28 2441216 ----a-w- c:\windows\system32\mkl_def.dll
2009-12-14 20:10:28 2174976 ----a-w- c:\windows\system32\mkl_lapack32.dll
2009-12-14 20:10:28 184320 ----a-w- c:\windows\system32\libguide40.dll
2009-12-14 20:10:25 0 d-----w- c:\program files\BRS
2009-12-14 20:09:13 0 d-----w- c:\program files\OpenAL
2009-12-09 20:06:42 0 d-----w- c:\program files\VideoLAN
2009-12-09 20:05:24 0 d-----w- C:\Root
2009-12-09 19:39:14 0 d-----w- c:\windows\PCHEALTH
2009-12-09 19:36:48 0 d-----w- c:\program files\Microsoft Visual Studio 8
2009-12-09 19:36:01 0 d-----w- c:\programdata\Microsoft Help
2009-12-09 19:11:36 0 d-----w- c:\users\fazycz\Elastomania
2009-12-08 18:46:24 0 d-----w- c:\users\fazycz\appdata\roaming\DAEMON Tools Pro

==================== Find3M ====================

2010-01-06 18:39:02 622422 ----a-w- c:\windows\system32\perfh005.dat
2010-01-06 18:39:02 118604 ----a-w- c:\windows\system32\perfc005.dat
2009-12-19 17:35:44 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2009-12-19 17:35:44 138464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2009-12-19 17:35:37 111928 ----a-w- c:\windows\system32\PnkBstrB.exe
2009-12-14 20:09:13 445016 ----a-w- c:\windows\system32\wrap_oal.dll
2009-12-14 20:09:13 109144 ----a-w- c:\windows\system32\OpenAL32.dll
2009-11-20 19:33:00 812648 ----a-w- c:\windows\system32\nvsvc.dll
2009-11-20 19:33:00 1323624 ----a-w- c:\windows\system32\nvsvcr.dll
2009-11-20 19:33:00 12685928 ----a-w- c:\windows\system32\nvcpl.dll
2009-11-20 19:33:00 122984 ----a-w- c:\windows\system32\nvvsvc.exe
2009-11-20 19:33:00 110184 ----a-w- c:\windows\system32\nvmctray.dll
2009-11-19 20:42:56 592488 ----a-w- c:\windows\system32\nvuninst.exe
2009-11-16 13:09:56 22328 ----a-w- c:\users\fazycz\appdata\roaming\PnkBstrK.sys
2009-11-12 19:13:03 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-11-12 16:42:16 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2009-11-07 16:17:30 319488 ----a-w- c:\windows\HideWin.exe
2009-11-06 09:59:54 15406728 ----a-w- c:\windows\system32\xlive.dll
2009-11-06 09:59:54 13642888 ----a-w- c:\windows\system32\xlivefnt.dll
2009-11-02 19:42:06 195456 ------w- c:\windows\system32\MpSigStub.exe
2009-11-02 17:05:36 167064 ----a-w- c:\windows\system32\xliveinstall.dll
2009-11-02 17:05:34 71832 ----a-w- c:\windows\system32\xliveinstallhost.exe
2009-10-30 14:08:46 29512 ----a-w- c:\windows\system32\TURegOpt.exe
2009-10-30 14:01:12 21320 ----a-w- c:\windows\system32\authuitu.dll
2009-10-30 14:01:00 30024 ----a-w- c:\windows\system32\uxtuneup.dll
2009-10-29 07:22:37 2048 ----a-w- c:\windows\system32\tzres.dll
2009-10-11 03:17:27 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-07-14 08:43:59 36232 ----a-w- c:\windows\inf\perflib\0405\perfd.dat
2009-07-14 08:43:59 36232 ----a-w- c:\windows\inf\perflib\0405\perfc.dat
2009-07-14 08:43:59 292004 ----a-w- c:\windows\inf\perflib\0405\perfi.dat
2009-07-14 08:43:59 292004 ----a-w- c:\windows\inf\perflib\0405\perfh.dat
2009-07-14 04:41:57 174 --sha-w- c:\program files\desktop.ini
2009-07-14 00:34:40 291294 ----a-w- c:\windows\inf\perflib\0000\perfi.dat
2009-07-14 00:34:40 291294 ----a-w- c:\windows\inf\perflib\0000\perfh.dat
2009-07-14 00:34:38 31548 ----a-w- c:\windows\inf\perflib\0000\perfd.dat
2009-07-14 00:34:38 31548 ----a-w- c:\windows\inf\perflib\0000\perfc.dat
2009-06-10 21:26:35 9633792 --sha-r- c:\windows\fonts\StaticCache.dat
2009-07-14 01:14:45 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe

============= FINISH: 20:21:04,22 ===============

A prej ten Attach.txt mam zazipovat a uložit jako přílohu,tudíž konám jak je psáno:
Přílohy
Attach.rar
(2.18 KiB) Staženo 12 x
MB:ASUS M4A77TD | CPU : AMD Phenom II X4 3,2GHz@4,12 + Noctua NH-D14 |GK : MSI GTX560Ti TwinFrozrII OC @925/2100/1850 | RAM : 2x2GB DDR3 Zeppelin 1300MHz + 2x2GB OCZ LV 1300MHz | HDD : SSD OCZ Vexter4 120GB + Segate Barracuda 7200.12 500GB + WD AASD 500GB | PwR : OCZ Fatal1ty 550W | Case : Fractal Define R3

pitimir
Level 3.5
Level 3.5
Příspěvky: 850
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :)

Příspěvekod pitimir » 07 led 2010 09:59

Dobra robota, ale ten cracknuty ESS tam nemusel byt :roll:
Odporucam vymenit ho za free alternativy.

Presun ikonu CF na plochu, vypni vsetky otvorene aplikacie, ako aj rezidenty antiviru, antispywaru a firewall a otvor poznamkovy blok. Donho skopiruj:

Kód: Vybrat vše

KillAll::
File::
c:\windows\nod32fixtemdono.reg

RegLockDel::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

Uloz na plochu ako CFScript.txt a mysou pretiahni nad ikonou CF.

Obrázek

Program script spracuje a spravi novy log.


Pozor: Ak po aplikacii skriptu nenabehne Windows, restartuj PC, stlac F8 a zvol Poslednu znamu funkcnu konfiguraciu.
Nemam rad amaterizmus...

A adresat odkazu to vie :)

Uživatelský avatar
iMohos
Level 3.5
Level 3.5
Příspěvky: 745
Registrován: prosinec 07
Bydliště: Praha 8
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu :)

Příspěvekod iMohos » 07 led 2010 22:07

ComboFix 10-01-02.05 - FazyCZ 07.01.2010 21:56:56.2.1 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2047.1469 [GMT 1:00]
Spuštěný z: c:\users\FazyCZ\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\FazyCZ\Desktop\CFScript.txt
AV: ESET Smart Security 3.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET Personal firewall *enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
SP: ESET Smart Security 3.0 *enabled* (Updated) {E5E70D32-0101-4B98-A4D6-D1D15C3BB448}
* Rezidentní štít AV je zapnutý

.

((((((((((((((((((((((((( Soubory vytvořené od 2009-12-07 do 2010-01-07 )))))))))))))))))))))))))))))))
.

2010-01-07 21:04 . 2010-01-07 21:04 -------- d-----w- c:\users\FazyCZ\AppData\Local\temp
2010-01-07 21:04 . 2010-01-07 21:04 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-01-07 21:04 . 2010-01-07 21:04 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-01-04 16:52 . 2010-01-04 16:52 -------- d-----w- c:\programdata\Kaspersky Lab
2010-01-03 14:41 . 2010-01-03 14:41 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
2010-01-03 14:41 . 2010-01-03 14:41 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Atari
2010-01-03 14:40 . 2010-01-03 14:40 -------- d-----w- c:\program files\Common Files\PocketSoft
2010-01-03 14:40 . 2002-02-27 17:50 197120 ----a-w- c:\windows\patchw32.dll
2010-01-03 14:35 . 2010-01-03 14:35 -------- d-----w- c:\program files\Atari
2010-01-02 20:11 . 2010-01-02 20:11 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Malwarebytes
2010-01-02 20:11 . 2009-12-30 13:55 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-02 20:11 . 2010-01-02 20:11 -------- d-----w- c:\programdata\Malwarebytes
2010-01-02 20:11 . 2009-12-30 13:54 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-02 20:11 . 2010-01-02 20:11 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-02 12:42 . 2010-01-02 12:42 -------- d-----w- C:\_OTL
2010-01-02 00:14 . 2010-01-02 00:14 -------- d-----w- c:\program files\MSXML 4.0
2009-12-31 21:01 . 2009-12-31 21:01 -------- d-----w- c:\users\FazyCZ\AppData\Local\Opera
2009-12-31 21:00 . 2010-01-01 23:28 -------- d-----w- c:\program files\Opera
2009-12-31 13:24 . 2009-12-31 13:24 10134 ----a-r- c:\users\FazyCZ\AppData\Roaming\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
2009-12-31 13:24 . 2009-12-31 13:24 -------- d-----w- c:\program files\Microsoft WSE
2009-12-31 13:23 . 2009-12-31 15:16 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Autodesk
2009-12-31 13:22 . 2009-12-31 13:42 -------- d-----w- c:\users\FazyCZ\AppData\Local\Autodesk
2009-12-31 13:22 . 2009-12-31 13:42 -------- d-----w- c:\programdata\Autodesk
2009-12-31 13:22 . 2009-12-31 13:23 -------- d-----w- c:\program files\DWG TrueView 2010
2009-12-31 13:19 . 2009-12-31 13:51 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2009-12-31 13:19 . 2009-12-31 13:58 -------- d-----w- c:\program files\Autodesk
2009-12-31 12:53 . 2009-12-31 12:57 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\FileZilla
2009-12-31 12:53 . 2009-12-31 12:53 -------- d-----w- c:\program files\FileZilla FTP Client
2009-12-29 18:41 . 2009-12-29 18:41 -------- d-----w- c:\users\FazyCZ\AppData\Local\Criterion Games
2009-12-29 17:21 . 2009-12-29 17:21 -------- d-----w- c:\program files\Electronic Arts
2009-12-27 12:29 . 2010-01-04 18:01 -------- d-----w- c:\users\FazyCZ\Other
2009-12-27 10:45 . 2009-12-27 10:45 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Creative
2009-12-27 10:40 . 2009-12-28 09:38 -------- d-----w- c:\programdata\Creative
2009-12-27 10:40 . 2009-12-27 10:40 -------- d--h--w- c:\programdata\{615DB4DC-B7C1-4125-9858-78EF460B76D2}
2009-12-27 10:40 . 2009-12-27 10:40 2422433 ----a-w- c:\programdata\{615DB4DC-B7C1-4125-9858-78EF460B76D2}\setup.exe
2009-12-27 10:39 . 2009-03-30 09:04 2597340 ----a-w- c:\programdata\{9BA38AC8-8A1E-463A-97ED-AE291D3E1A06}\Setup.exe
2009-12-27 10:39 . 2010-01-02 09:44 -------- d-----w- c:\program files\Creative
2009-12-27 10:39 . 2009-12-27 10:39 -------- d--h--w- c:\programdata\{9BA38AC8-8A1E-463A-97ED-AE291D3E1A06}
2009-12-26 17:18 . 2009-12-30 09:57 -------- d-----w- c:\program files\EVGA Precision
2009-12-26 08:55 . 2009-12-26 08:58 -------- d-----w- c:\users\FazyCZ\Nová složka (3)
2009-12-25 12:28 . 2009-12-27 14:30 -------- d-----w- c:\users\FazyCZ\AppData\Local\NFS Underground 2
2009-12-24 09:47 . 2008-01-07 13:29 352 ---ha-w- c:\windows\nod32fixtemdono.reg
2009-12-24 09:27 . 2009-12-24 09:27 -------- d-----w- c:\program files\ESET
2009-12-23 16:00 . 2009-11-20 18:18 4990056 ----a-w- c:\windows\system32\NVStWiz.exe
2009-12-23 11:47 . 2010-01-06 16:57 -------- d-----w- c:\users\FazyCZ\zaloha
2009-12-21 13:38 . 2009-12-21 13:38 -------- d-----w- C:\Autodesk
2009-12-20 22:16 . 2009-12-20 22:16 -------- d-----w- c:\program files\CPUID
2009-12-20 22:16 . 2009-03-27 00:16 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2009-12-20 13:38 . 2009-12-20 13:38 -------- d-----w- c:\program files\oZone3D
2009-12-17 19:04 . 2010-01-01 23:26 -------- d-----w- C:\games
2009-12-17 18:56 . 2009-12-18 13:54 -------- d-----w- c:\program files\EA GAMES
2009-12-14 20:19 . 2009-12-30 21:18 -------- d-----w- c:\programdata\Codemasters
2009-12-14 20:10 . 2009-07-13 18:04 839680 ----a-w- c:\windows\system32\mkl_vml_p4.dll
2009-12-14 20:10 . 2009-07-13 18:04 532480 ----a-w- c:\windows\system32\mkl_vml_p3.dll
2009-12-14 20:10 . 2009-07-13 18:04 512000 ----a-w- c:\windows\system32\mkl_vml_def.dll
2009-12-14 20:10 . 2009-07-13 18:04 3485696 ----a-w- c:\windows\system32\mkl_p4.dll
2009-12-14 20:10 . 2009-07-13 18:04 2793472 ----a-w- c:\windows\system32\mkl_p3.dll
2009-12-14 20:10 . 2009-07-13 18:04 2125824 ----a-w- c:\windows\system32\mkl_lapack64.dll
2009-12-14 20:10 . 2009-10-16 10:19 872448 ----a-w- c:\windows\system32\rapture3d_oal.dll
2009-12-14 20:10 . 2009-07-13 18:04 2441216 ----a-w- c:\windows\system32\mkl_def.dll
2009-12-14 20:10 . 2009-07-13 18:04 2174976 ----a-w- c:\windows\system32\mkl_lapack32.dll
2009-12-14 20:10 . 2009-07-13 18:04 184320 ----a-w- c:\windows\system32\libguide40.dll
2009-12-14 20:10 . 2009-12-14 20:10 -------- d-----w- c:\program files\BRS
2009-12-14 20:09 . 2009-12-30 19:11 -------- d-----w- c:\program files\OpenAL
2009-12-11 14:28 . 2009-12-27 19:31 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\dvdcss
2009-12-09 20:07 . 2010-01-07 19:20 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\vlc
2009-12-09 20:06 . 2009-12-09 20:06 -------- d-----w- c:\program files\VideoLAN
2009-12-09 20:05 . 2009-12-09 20:11 -------- d-----w- C:\Root
2009-12-09 19:40 . 2009-12-09 19:40 -------- d-----w- c:\program files\Microsoft Works
2009-12-09 19:39 . 2009-12-09 19:39 -------- d-----w- c:\windows\PCHEALTH
2009-12-09 19:39 . 2009-12-09 19:39 -------- d-----w- c:\program files\Microsoft.NET
2009-12-09 19:36 . 2009-12-09 19:36 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-12-09 19:36 . 2009-12-09 19:36 -------- d-----w- c:\users\FazyCZ\AppData\Local\Microsoft Help
2009-12-09 19:36 . 2009-12-09 19:52 -------- d-----w- c:\programdata\Microsoft Help
2009-12-09 19:34 . 2009-12-09 19:34 -------- d-----r- C:\MSOCache
2009-12-09 19:11 . 2009-12-10 19:19 -------- d-----w- c:\users\FazyCZ\Elastomania

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-07 21:00 . 2009-07-14 08:44 625676 ----a-w- c:\windows\system32\perfh005.dat
2010-01-07 21:00 . 2009-07-14 08:44 119794 ----a-w- c:\windows\system32\perfc005.dat
2010-01-07 20:52 . 2009-11-07 16:15 -------- d-----w- c:\programdata\NVIDIA
2010-01-07 20:51 . 2009-11-29 13:40 -------- d-----w- c:\program files\Trillian
2010-01-07 20:44 . 2009-11-25 20:37 -------- d-----w- c:\program files\Steam
2010-01-07 20:17 . 2009-11-12 17:58 -------- d-----w- c:\program files\Mystiq.org Counter-Strike 1.6
2010-01-07 20:04 . 2009-11-07 17:05 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\AIMP
2010-01-07 18:13 . 2010-01-07 18:13 17801 ----a-w- c:\windows\system32\drivers\AegisP.sys
2010-01-07 18:13 . 2010-01-07 18:13 -------- d-----w- c:\program files\ASUS
2010-01-07 18:13 . 2009-11-07 16:17 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-03 12:17 . 2009-11-15 11:26 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\uTorrent
2010-01-01 23:30 . 2009-11-16 14:47 -------- d-----w- c:\program files\Sanny Builder 3
2009-12-31 15:18 . 2009-11-26 17:37 -------- d-----w- c:\programdata\FLEXnet
2009-12-31 15:02 . 2009-11-07 16:10 160368 ----a-w- c:\users\FazyCZ\AppData\Local\GDIPFONTCACHEV1.DAT
2009-12-30 18:56 . 2009-11-07 18:07 -------- d-----w- c:\program files\Codemasters
2009-12-29 21:17 . 2009-07-14 04:52 -------- d-----w- c:\program files\Microsoft Games
2009-12-29 21:17 . 2009-07-14 04:52 -------- d-----w- c:\program files\Windows Sidebar
2009-12-29 15:42 . 2009-11-11 14:35 -------- d-----w- c:\program files\Common Files\Apple
2009-12-21 14:41 . 2009-11-14 12:21 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2009-12-21 14:40 . 2009-11-23 13:37 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2009-12-21 14:20 . 2009-12-02 16:12 -------- d-----w- c:\program files\Need for Speed - Shift
2009-12-19 17:35 . 2009-11-16 12:34 138464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2009-12-19 17:35 . 2009-11-16 12:19 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2009-12-19 17:35 . 2009-11-16 12:34 111928 ----a-w- c:\windows\system32\PnkBstrB.exe
2009-12-19 11:34 . 2009-11-13 16:04 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2009-12-18 14:59 . 2009-11-13 16:04 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2009-12-17 18:50 . 2009-07-14 04:52 -------- d-----w- c:\program files\DVD Maker
2009-12-14 20:09 . 2009-11-07 17:25 445016 ----a-w- c:\windows\system32\wrap_oal.dll
2009-12-14 20:09 . 2009-11-07 17:25 109144 ----a-w- c:\windows\system32\OpenAL32.dll
2009-12-09 20:05 . 2009-11-16 12:46 -------- d-----w- c:\program files\Activision
2009-12-09 19:40 . 2009-07-14 04:52 -------- d-----w- c:\program files\MSBuild
2009-12-08 18:46 . 2009-12-08 18:46 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\DAEMON Tools Pro
2009-12-07 20:24 . 2009-12-07 20:24 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Leadertech
2009-12-06 21:02 . 2009-11-07 18:12 -------- d-----w- c:\program files\CSS
2009-12-06 09:17 . 2009-11-08 09:01 -------- d-----w- c:\program files\LFS
2009-12-06 09:07 . 2009-12-05 19:27 -------- d-----w- c:\program files\Java
2009-12-03 16:45 . 2009-11-29 13:41 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Trillian
2009-12-01 16:27 . 2009-12-01 16:26 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\MyPhoneExplorer
2009-12-01 16:26 . 2009-12-01 16:26 -------- d-----w- c:\program files\MyPhoneExplorer
2009-12-01 16:11 . 2009-12-01 16:11 -------- d-----w- c:\program files\Sierra
2009-11-29 14:40 . 2009-11-29 14:40 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Stardock
2009-11-29 14:39 . 2009-11-29 14:39 -------- dc-h--w- c:\programdata\{A87EB928-0C6C-4071-AEF1-59E32BAEDF1B}
2009-11-29 14:39 . 2009-11-29 14:39 -------- d-----w- c:\program files\Stardock
2009-11-28 10:26 . 2009-11-07 17:35 -------- d-----w- c:\program files\Left 4 Dead
2009-11-27 12:32 . 2009-11-26 16:28 -------- d-----w- c:\program files\Common Files\Adobe
2009-11-26 18:59 . 2009-11-07 17:20 -------- d-----w- c:\program files\Futuremark
2009-11-26 18:46 . 2009-11-07 16:15 -------- d-----w- c:\program files\NVIDIA Corporation
2009-11-26 17:42 . 2009-11-25 20:37 -------- d-----w- c:\program files\Common Files\Steam
2009-11-26 17:33 . 2009-11-26 17:33 -------- d-----w- c:\programdata\ALM
2009-11-26 17:23 . 2009-11-26 17:23 -------- d-----w- c:\program files\Adobe Media Player
2009-11-26 17:22 . 2009-11-26 17:22 -------- d-----w- c:\program files\Common Files\Adobe AIR
2009-11-26 17:19 . 2009-11-26 17:19 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2009-11-20 19:33 . 2009-11-20 19:33 812648 ----a-w- c:\windows\system32\nvsvc.dll
2009-11-20 19:33 . 2009-11-20 19:33 1323624 ----a-w- c:\windows\system32\nvsvcr.dll
2009-11-20 19:33 . 2009-11-20 19:33 12685928 ----a-w- c:\windows\system32\nvcpl.dll
2009-11-20 19:33 . 2009-11-20 19:33 122984 ----a-w- c:\windows\system32\nvvsvc.exe
2009-11-20 19:33 . 2009-11-20 19:33 110184 ----a-w- c:\windows\system32\nvmctray.dll
2009-11-19 20:42 . 2009-11-07 16:14 592488 ----a-w- c:\windows\system32\nvuninst.exe
2009-11-19 13:14 . 2009-11-12 18:36 -------- d-----w- c:\program files\Rockstar Games
2009-11-16 13:09 . 2009-11-16 12:20 22328 ----a-w- c:\users\FazyCZ\AppData\Roaming\PnkBstrK.sys
2009-11-16 13:09 . 2009-11-16 12:20 22328 ----a-w- c:\users\FazyCZ\AppData\Roaming\PnkBstrK.sys
2009-11-15 11:28 . 2009-11-15 11:28 -------- d-----w- c:\program files\uTorrent
2009-11-14 14:12 . 2009-11-14 14:12 -------- d-----w- c:\program files\AMD
2009-11-13 23:39 . 2009-11-13 23:39 -------- d-----w- c:\programdata\Futuremark
2009-11-13 23:35 . 2009-11-13 23:35 -------- d-----w- c:\program files\Common Files\Futuremark Shared
2009-11-12 20:40 . 2009-11-12 20:40 -------- d-----w- c:\program files\BreakPoint Software
2009-11-12 20:13 . 2009-11-12 19:11 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2009-11-12 19:13 . 2009-11-09 20:02 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-11-12 16:42 . 2009-11-12 16:42 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2009-11-11 14:38 . 2009-11-11 14:37 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\Apple Computer
2009-11-11 14:36 . 2009-11-11 14:36 -------- d-----w- c:\programdata\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-11-11 14:36 . 2009-11-11 14:36 -------- d-----w- c:\program files\iTunes
2009-11-11 14:36 . 2009-11-11 14:36 -------- d-----w- c:\program files\iPod
2009-11-11 14:36 . 2009-11-11 14:35 -------- d-----w- c:\programdata\Apple Computer
2009-11-11 14:36 . 2009-11-11 14:35 -------- d-----w- c:\program files\QuickTime
2009-11-11 14:35 . 2009-11-11 14:35 -------- d-----w- c:\program files\Apple Software Update
2009-11-11 14:35 . 2009-11-11 14:35 -------- d-----w- c:\programdata\Apple
2009-11-11 14:29 . 2009-11-11 14:29 -------- d-----w- c:\program files\TuneUp Utilities 2010
2009-11-11 14:29 . 2009-11-11 14:29 -------- d-----w- c:\users\FazyCZ\AppData\Roaming\TuneUp Software
2009-11-11 14:29 . 2009-11-11 14:28 -------- d-----w- c:\programdata\TuneUp Software
2009-11-11 14:28 . 2009-11-11 14:28 -------- d-sh--w- c:\programdata\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2009-11-09 20:02 . 2009-11-09 20:02 -------- d--h--r- c:\users\FazyCZ\AppData\Roaming\SecuROM
2009-11-09 19:50 . 2009-11-09 19:50 -------- d-----w- c:\program files\Aspyr
2009-11-09 17:43 . 2009-11-09 17:43 -------- d-----w- c:\program files\Alchemy Elixir
2009-11-08 16:48 . 2009-11-08 16:48 0 ----a-w- c:\windows\nsreg.dat
2009-11-07 17:26 . 2009-11-07 17:26 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-11-07 16:17 . 2009-11-07 16:17 319488 ----a-w- c:\windows\HideWin.exe
2009-11-06 09:59 . 2009-11-06 09:59 15406728 ----a-w- c:\windows\system32\xlive.dll
2009-11-06 09:59 . 2009-11-06 09:59 13642888 ----a-w- c:\windows\system32\xlivefnt.dll
2009-11-02 19:42 . 2009-11-12 16:52 195456 ------w- c:\windows\system32\MpSigStub.exe
2009-11-02 17:05 . 2009-11-02 17:05 167064 ----a-w- c:\windows\system32\xliveinstall.dll
2009-11-02 17:05 . 2009-11-02 17:05 71832 ----a-w- c:\windows\system32\xliveinstallhost.exe
2009-10-30 14:08 . 2009-11-11 14:29 29512 ----a-w- c:\windows\system32\TURegOpt.exe
2009-10-30 14:01 . 2009-11-11 14:29 21320 ----a-w- c:\windows\system32\authuitu.dll
2009-10-30 14:01 . 2009-11-11 14:29 30024 ----a-w- c:\windows\system32\uxtuneup.dll
2009-10-29 07:22 . 2009-11-25 14:34 2048 ----a-w- c:\windows\system32\tzres.dll
2009-10-28 19:58 . 2009-10-28 19:58 79144 ----a-w- c:\programdata\Apple Computer\Installer Cache\iTunes 9.0.2.25\SetupAdmin.exe
2009-10-11 03:17 . 2009-12-05 19:27 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.

((((((((((((((((((((((((((((( SnapShot@2010-01-03_20.44.05 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-11-07 16:24 . 2010-01-06 16:12 25502 c:\windows\System32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 04:55 . 2010-01-07 20:53 40694 c:\windows\System32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 04:50 . 2010-01-07 19:53 86016 c:\windows\System32\DriverStore\infpub.dat
- 2009-07-14 04:50 . 2009-12-29 15:42 86016 c:\windows\System32\DriverStore\infpub.dat
+ 2010-01-07 18:13 . 2005-01-19 10:01 11264 c:\windows\System32\drivers\usb8023w.sys
+ 2010-01-07 18:13 . 2005-01-19 10:01 11136 c:\windows\System32\drivers\usb8023m.sys
+ 2010-01-07 18:13 . 2005-01-19 10:01 11136 c:\windows\System32\drivers\usb8023k.sys
+ 2010-01-07 18:13 . 2005-01-19 10:01 27008 c:\windows\System32\drivers\rndismpw.sys
+ 2010-01-07 18:13 . 2005-01-19 10:01 27264 c:\windows\System32\drivers\rndismpm.sys
+ 2010-01-07 18:13 . 2005-01-19 10:01 27264 c:\windows\System32\drivers\RNDISMPK.sys
+ 2010-01-07 18:13 . 2002-09-09 20:01 61440 c:\windows\System32\ASUSW32N50.dll
+ 2010-01-07 18:13 . 2002-09-09 18:54 16269 c:\windows\System32\ASNDIS5.sys
+ 2009-07-14 04:34 . 2010-01-04 16:42 66752 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2009-11-07 16:27 . 2010-01-07 20:08 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-07 16:27 . 2010-01-03 20:11 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-11-07 16:27 . 2010-01-07 20:08 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-11-07 16:27 . 2010-01-03 20:11 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-07 16:27 . 2010-01-07 20:08 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-11-07 16:27 . 2010-01-03 20:11 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-01-07 19:54 . 2010-01-07 19:54 10134 c:\windows\Installer\{DA97BDF9-BC72-46FD-8E76-427F2BB951EE}\ARPPRODUCTICON.exe
- 2009-12-23 16:06 . 2009-12-23 16:06 10134 c:\windows\Installer\{DA97BDF9-BC72-46FD-8E76-427F2BB951EE}\ARPPRODUCTICON.exe
+ 2009-11-07 16:15 . 2010-01-07 20:53 6398 c:\windows\System32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1057476104-4051501317-3611337506-1000_UserData.bin
+ 2010-01-07 18:15 . 2010-01-07 18:15 9560 c:\windows\System32\NetworkList\Icons\{9ED50A9B-D461-4DB3-817F-534063218AC5}_48.bin
+ 2010-01-07 18:15 . 2010-01-07 18:15 4280 c:\windows\System32\NetworkList\Icons\{9ED50A9B-D461-4DB3-817F-534063218AC5}_32.bin
+ 2010-01-07 18:15 . 2010-01-07 18:15 2456 c:\windows\System32\NetworkList\Icons\{9ED50A9B-D461-4DB3-817F-534063218AC5}_24.bin
+ 2010-01-07 18:06 . 2010-01-07 18:06 9560 c:\windows\System32\NetworkList\Icons\{20491BAE-D7FE-48FA-ACC2-FF4E2E01D36D}_48.bin
+ 2010-01-07 18:06 . 2010-01-07 18:06 4280 c:\windows\System32\NetworkList\Icons\{20491BAE-D7FE-48FA-ACC2-FF4E2E01D36D}_32.bin
+ 2010-01-07 18:06 . 2010-01-07 18:06 2456 c:\windows\System32\NetworkList\Icons\{20491BAE-D7FE-48FA-ACC2-FF4E2E01D36D}_24.bin
- 2010-01-03 20:35 . 2010-01-03 20:35 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-01-07 20:52 . 2010-01-07 20:52 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-01-07 20:52 . 2010-01-07 20:52 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2010-01-03 20:35 . 2010-01-03 20:35 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2010-01-07 18:13 . 2004-05-07 17:57 159827 c:\windows\System32\RemSvc.exe
+ 2009-07-14 02:05 . 2010-01-07 21:00 609896 c:\windows\System32\perfh009.dat
+ 2009-07-14 02:05 . 2010-01-07 21:00 104214 c:\windows\System32\perfc009.dat
+ 2009-07-14 04:50 . 2010-01-07 19:53 143360 c:\windows\System32\DriverStore\infstrng.dat
- 2009-07-14 04:50 . 2009-12-29 15:42 143360 c:\windows\System32\DriverStore\infstrng.dat
- 2009-07-14 04:50 . 2009-12-29 15:42 143360 c:\windows\System32\DriverStore\infstor.dat
+ 2009-07-14 04:50 . 2010-01-07 18:13 143360 c:\windows\System32\DriverStore\infstor.dat
+ 2010-01-07 18:13 . 2004-05-06 11:21 496640 c:\windows\System32\ASWLSVC.exe
+ 2010-01-07 18:13 . 2006-02-21 16:23 525824 c:\windows\System32\ASWL2K.exe
- 2009-07-14 02:03 . 2010-01-03 10:32 6815744 c:\windows\System32\SMI\Store\Machine\SCHEMA.DAT
+ 2009-07-14 02:03 . 2010-01-07 20:12 6815744 c:\windows\System32\SMI\Store\Machine\SCHEMA.DAT
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2009-04-23 691656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [2009-04-14 604704]
"K3805"="c:\program files\Alchemy Elixir\control.exe" [2008-10-23 237568]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2007-12-21 1443072]
"EVGAPrecision"="c:\program files\EVGA Precision\EVGAPrecisionWrapper.exe" [2009-04-15 44048]
"Control Center"="c:\program files\ASUS\WLAN Card Utilities\Center.exe" [2006-03-09 1669120]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Alchemy Elixir.lnk - c:\program files\Alchemy Elixir\traicon.exe [2009-11-9 126976]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\SharedTaskScheduler]
"{1984DD45-52CF-49cd-AB77-18F378FEA264}"= "c:\program files\Stardock\Fences\FencesMenu.dll" [2009-10-02 128360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer"=wdmaud.drv

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2007-08-24 06:00 33648 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"RGSC"=c:\program files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
"Steam"="c:\program files\steam\steam.exe" -silent
"SoftAuto.exe"="c:\program files\Creative\Software Update 3\SoftAuto.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" -atboottime
"Adobe Acrobat Speed Launcher"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
"Acrobat Assistant 8.0"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
"Adobe_ID0ENQBO"=c:\progra~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe"

R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\System32\drivers\vwififlt.sys [14.7.2009 0:52 48128]
R2 cpuz132;cpuz132;c:\windows\System32\drivers\cpuz132_x32.sys [20.12.2009 23:16 12672]
R2 ekrn;Eset Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [21.12.2007 8:21 468224]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [20.11.2009 19:17 240232]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [30.10.2009 15:05 1021256]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [14.10.2009 7:24 10064]
S0 sptd;sptd;c:\windows\System32\drivers\sptd.sys [7.11.2009 18:26 721904]
S3 Adobe Version Cue CS4;Adobe Version Cue CS4;c:\program files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [15.8.2008 5:46 284016]
S3 CTUPnPSv;Creative Centrale Media Server;c:\program files\Creative\Creative Centrale\CTUPnPSv.exe [21.5.2008 12:42 64000]
S3 ElanFltr;Alchemy Elixir;c:\windows\System32\drivers\ElanFltr.sys [9.11.2009 18:43 42880]
S3 KMWDFILTERx86;HIDServiceDesc;c:\windows\System32\drivers\KMWDFILTER.sys [29.4.2009 15:37 25088]
S3 netr73;ASUS USB - ovladač karty pro bezdrátovou síť LAN pro systém Windows Vista;c:\windows\System32\drivers\netr73.sys [10.6.2009 22:18 545792]
S3 RTCore32;RTCore32;c:\program files\EVGA Precision\RTCore32.sys [25.5.2005 19:39 4608]
S3 s816bus;Sony Ericsson Device 816 driver (WDM);c:\windows\System32\drivers\s816bus.sys [12.11.2009 17:39 81832]
S3 s816mdfl;Sony Ericsson Device 816 USB WMC Modem Filter;c:\windows\System32\drivers\s816mdfl.sys [12.11.2009 17:39 13864]
S3 s816mdm;Sony Ericsson Device 816 USB WMC Modem Driver;c:\windows\System32\drivers\s816mdm.sys [12.11.2009 17:39 107304]
S3 s816mgmt;Sony Ericsson Device 816 USB WMC Device Management Drivers (WDM);c:\windows\System32\drivers\s816mgmt.sys [12.11.2009 17:39 99112]
S3 s816obex;Sony Ericsson Device 816 USB WMC OBEX Interface;c:\windows\System32\drivers\s816obex.sys [12.11.2009 17:39 97320]
S3 s816unic;Sony Ericsson Device 816 USB Ethernet Emulation SEMCMR7 (WDM);c:\windows\System32\drivers\s816unic.sys [12.11.2009 17:39 97704]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS FontCache fdrespub AppIDSvc QWAVE wcncsvc SensrSvc

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Převést cíl vazby do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Převést do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: Připojit cíl vazby k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Připojit k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
FF - ProfilePath - c:\users\FazyCZ\AppData\Roaming\Mozilla\Firefox\Profiles\yhy7bwdy.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/?#obsah
FF - plugin: c:\program files\NVIDIA Corporation\3D Vision\npnv3dv.dll

---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 2
FF - user.js: nglayout.initialpaint.delay - 750
FF - user.js: content.notify.interval - 750000
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.switch.threshold - 750000
FF - user.js: network.http.max-connections-per-server - 4
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_USERS\S-1-5-21-1057476104-4051501317-3611337506-1000\Software\SecuROM\License information*]
"datasecu"=hex:d6,92,ba,7b,80,98,5a,c6,78,89,0b,00,df,74,d4,b9,5d,81,1c,d6,56,
76,a2,68,c9,29,64,20,30,0c,a0,66,51,99,64,6d,fc,ba,a7,16,0a,93,83,f4,e0,83,\
"rkeysecu"=hex:8d,b8,91,ea,68,be,f5,96,13,ef,0e,87,cb,62,26,2c

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-01-07 22:06:35
ComboFix-quarantined-files.txt 2010-01-07 21:06
ComboFix2.txt 2010-01-03 20:46

Před spuštěním: Volných bajtů: 226 433 249 280
Po spuštění: Volných bajtů: 226 498 297 856

- - End Of File - - 54CAC86D8D326ADF7C1265E585459D55
MB:ASUS M4A77TD | CPU : AMD Phenom II X4 3,2GHz@4,12 + Noctua NH-D14 |GK : MSI GTX560Ti TwinFrozrII OC @925/2100/1850 | RAM : 2x2GB DDR3 Zeppelin 1300MHz + 2x2GB OCZ LV 1300MHz | HDD : SSD OCZ Vexter4 120GB + Segate Barracuda 7200.12 500GB + WD AASD 500GB | PwR : OCZ Fatal1ty 550W | Case : Fractal Define R3

pitimir
Level 3.5
Level 3.5
Příspěvky: 850
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu :)

Příspěvekod pitimir » 08 led 2010 09:55

Sprav to este raz prosim.
Nemam rad amaterizmus...

A adresat odkazu to vie :)


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Seznam[Bot] a 102 hostů