Stránka 1 z 1

Virus alert!

Napsal: 18 srp 2008 22:01
od xppeettrr
Dobrý den, prosím o radu. Vedle hodin ve windows xp se zobrazilo Virus alert!. Zasílám hijackthis. Pomůže někdo co s tím???? Díky

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:43: VIRUS ALERT!, on 18.8.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Safe mode with network support

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Outlook Express\msimn.exe
C:\PROGRA~1\FREEDO~1\fdm.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: QXK Olive - {36D92B01-22BC-4FB7-A7AC-C574873FDDBE} - C:\WINDOWS\mesdxbrqmnx.dll
O2 - BHO: (no name) - {3AAC4C68-AFC8-11DB-80EF-8AF955D89593} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: IE Optimizer - {BACA5B3B-DD57-4E62-B986-9A5677FBF001} - C:\WINDOWS\system32\videoa32.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [602PC SUITE PDF Saver] "C:\Program Files\Common Files\602phs\pdfSaver.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SpyHunter Security Suite] "C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter3.exe"
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKCU\..\Run: [startkey] C:\WINDOWS\system32\gs.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [pdfSaver3] "c:\Program Files\PDF\pdfSaver\pdfSaver3.exe"
O4 - HKCU\..\Run: [antispy] "C:\Program Files\IEAntiVirus\scan.exe"
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout Free Download Managerem - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Stáhnout vybrané Free Download Managerem - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Stáhnout vše Free Download Managerem - file://C:\Program Files\Free Download Manager\dlall.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.nvidia.com/content/DriverDow ... eqlab3.cab
O16 - DPF: {22272CAC-E859-4523-B505-7ECF74469A1B} (Mdview3d Control) - http://www.veka.de/__C1257308002B1CFE.n ... view3d.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 5484954734
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O23 - Service: FLEXlm server for PTC - Unknown owner - c:\Applic\proe2002\i486_nt\obj\lmgrd.exe (file missing)
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

--
End of file - 7394 bytes

Re: Virus alert!

Napsal: 20 srp 2008 07:30
od fredik
Vítej na fóru

Pokud nutně nepotřebuješ tak odinstaluj:
SpyHunter

Máš tam víc antispyware programů Spy Sweepe a Spybot, u jednoho z nich si vypni rezidentní ochranu.

Stáhni si SDFix
- Spusť ho a rozbalí se ti na disk kde je nainstalovaný Windows (typicky to je C:\SDfix)
- Pak restartuj PC do nouzového režimu (zvol možnost: Stav nouze, ne Stav nouze s práci v síti)
- Otevři adresář kde je vybalený SDFix a spusť soubor RunThis.bat tím spustíš program.
* Pak stiskni klávesu Y a pak Enter pro zahájení čistícího procesu.
* Pro dokončení kontroly budeš vyzván ke stisknutí libovolné klávesy a počítač se restartuje.
* Při nabíhání operačního systému se program spustí znovu a dokončí čistící proces. Až se objeví Finish, budeš muset po vyzvání stisknout libovolnou klávesu, tím se ukončí program a zobrazí se ti ikony na ploše
- Když se skončí načítání ikon na ploše, otevře se ti na obrazovce log z SDFix a zároveň ho uloží do adresáře kde je rozbalený SDFix jako soubor Report.txt
Pak sem zkopíruj jeho obsah + nový log z HJT.

Re: Virus alert!

Napsal: 20 srp 2008 21:30
od xppeettrr
Dobrý den, díky za návod všechno jsem podle něj udělal a tady jsou ty dva soubory log:

SDFix: Version 1.218
Run by U§ivatel on st 20.08.2008 at 21:00

Microsoft Windows XP [Verze 5.1.2600]
Running From: C:\SDFix\SDFix

Checking Services :


Restoring Default Security Values
Restoring Default Hosts File
Restoring Windows Product ID To Remove Fake Virus Alert
Restoring Time Format To Remove Fake Virus Alert

Rebooting


Checking Files :

Trojan Files Found:

C:\WINDOWS\EDPW.EXE - Deleted
C:\WINDOWS\mesdxbrqmnx.dll - Deleted
C:\Documents and Settings\U§ivatel\Plocha\NASTY VIDEOS.url - Deleted
C:\WINDOWS\ateqoflr.exe - Deleted
C:\WINDOWS\system32\plugin1.dat - Deleted
C:\WINDOWS\system32\vav.cpl - Deleted
C:\WINDOWS\SYSTEM32\IEVIDDSA.DLL - Deleted
C:\WINDOWS\SYSTEM32\VIDEOA32.DLL - Deleted
C:\WINDOWS\SYSTEM32\VIDEODSA.DLL - Deleted





Removing Temp Files

ADS Check :



Final Check :

catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-20 21:10:34
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\a347scsi\Config\jdgg40]
"ujdew"=hex:20,02,00,00,ce,6b,9e,48,5d,c4,ae,91,ca,8d,73,1a,86,49,36,3e,09,..
"ljej40"=hex:9a,f7,bc,5c,75,d1,65,6e,d5,15,21,4a,9a,66,4f,cd,7a,87,96,57,86,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet006\Control\Session Manager]
"PendingFileRenameOperations"=str(7):"d\3 \0p\0\xff88\xffffn nť\xe4adČ\0\0H\x81\1\0\0\0\x1970\0\xffff\xffff\0\0\xffff\xffff\xda90\6\xffff\xffff\36\0\0\0\0\0\0\0\b\0(\0VN\x3031D&E\x305f3\x2638SBY\x305fC14\x2638RV\x3241\xffc8\xffffv\e\xabb4\0\xa60\0\a\0\1vPnigieeaeprtos,n\xfff0\xffff ' ' &€\xffffC\IDW\yt\x336d2io.l\x2e00dl\00_sĎ•\0\0\0\0\0\0\0\0\0\2\0\2\0\20\0\20\0\1\0\6\0\0\0\0\0\0\0\0\0\0\0NOD32 protected [MSAFD Tcpip [TCP/IP]]\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0C \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0\x1a78\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\6\0\f\0\x3030\x3030\x3030\x3030\x30300\x27e6c\xffd0\xffffv\21\x378\0 \0\3\0\1oPceCtlgtm\0ŕ\0 \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0\xfd0\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\a\0\f\0\x3030\x3030\x3030\x3030\x30300\0\xffd0\xffffv\21\x378\0 \0\3\0\1\0PceCtlgt\x306d0\1o\xfff8\xffff \0\xfff0\xffff20000\0\xfff0\xffff \0 \0ç\x9d5\xfff8\xffffpHhi0v\20 \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0\x1930\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\4\0\f\0\x3030\x3030\x3030\x3030\x30300\0\0\xfff0\xffff\0\0\0\xffe0\xffffv\a\30\0\0\1\0\1EIfah\xffd0\xffffv\21\x378\0 \0\3\0\1cPceCtlgt\x106d\0\x27c5c\xfff8\xffffđ\0\xfff8\xffff \0 \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0\x1980\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\5\0\f\0\x3030\x3030\x3030\x3030\x30300\xf3a0\0\xffd0\xffffv\21\x378\0 \0\3\0\1tPceCtlgt\x36d\0\x2458\1\xffe0\xffffv\6X\0Ŕ\30\1\0\1tDiem\xffe0\xffffv\5<\0`\27\1\0\1\0Cas\0\xffe8\xffffMicrosoft\0\xffd0\xffffv\21\x378\0\x23a0\0\3\0\1cPceCtlgt\x106d\0\x27c5c\xffe0\xffffv\3\24\0\xfe60\25\1\0\1\30MgX\30\xfff0\xffff-1\0\aH\a\xffd8\xffffl\2(\25\x2140&P.\xe1416P.\xe1416Č\0Č\x81\xffd8\xffffv\v\22\0p\0\1\0\1\0Cretsr\0\0\xffd8\xffffv\16\30\0Č\0\1\0\1\0DcNmSreU\xffe8\xffffl\2\x5f8\0d\x29c4\xf560Z\xe918H\xff68\xffff\1x\0\x84\0\0\0\24\0\2d\4\0\0\30\23\17\0\0\x500 \0\x220\0\0\30\23\17\0\0\x500 \0\0\0\30\23\17\0\0\x500 \0#\0\0\24\1\0\0\0\x500\v\0\0\0\x500\22\0\0\0\x500\22\0ie\xffc0\xffffv$\4\0v\5\xffe8\xffffmshdc.inf\0\xfff0\xffff20000\0\xffd0\xffffv\21\x378\0\xf020\0\3\0\1cPceCtlgt\x106d\0\x27c5c\xffd0\xffffv\21\x378\0\xf3a0\0\3\0\1cPceCtlgt\x2a6d\0\x27e6c \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0\x1aa0\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\b\0\f\0\x3030\x3030\x3030\x3030\x30300\x27e8c \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0`\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\t\0\f\0\x3030\x3030\x3030\x3030\x3030\x3031\x27ecc\xffd0\xffffv\21\x378\0 \0\3\0\1oPceCtlgtm\0\xfd0\0\xffd0\xffffv\21\x378\0\x2458\1\3\0\1\0PceCtlgt\x306d\x3331is\xffd0\xffffv\30\f\0\xfd8\0\1\0\1\0WiTKlSrieieu\xffe0\xffffv\a\24\00\0\1\0\1\0Ifah\xffe0\xffffv\5\x220\0 \34\3\0\1gudwt\xfff0\xffff\x3000\0\x2000\0\0\0\xffe0\xffffv\6„\0\xdc28\34\3\0\1\0le\x3034\0\xfff8\xffff¨V \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0Ŕ\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\0\0\f\0\x3030\x3030\x3030\x3030\x3030\x313025\xfff0\xffff\0ĎWĆ)\0\xfff0\xffff\xdc08Ő\x1a1cÇ\0\0\xffd8\xffffv\17B\0\x18e8\0\1\0\1\6EuPoPg\x33732\xfff8\xffffĐ\0\xffe0\xffffv\b\4\1\0\f\0\x3030\x3030\x3030\x3030\x3030\x3230,n\xffd8\xffffv\n&\0°\0\1\0\1\0Ifeto\0\0\0\xffe8\xffffMicrosoft\0\xfff0\xffff\x33d8\0\x2fd8\4\x33b0\0\xffe8\xffffmshdc.inf\0¸\xffffstorprop.dll,IdePropPageProvider\0\0\xfff8\xffff\x2f68\0\xffd8\xffffv\n\30\0ŕ\0\1\0\1\0Ifeto\0\0\0\xfff0\xffff\xffffv\a\24\0Č\0\1\0\1\0Ifah\xffd0\xffffv\21,\0\0\1\0\1\0AscaeFles6\x30327\xffe8\xffff5-26-2006\0\xfff8\xffff\xf10\0\xffe0\xffffv\5<\0č\27\1\0\1\0Cas\0\xfff8\xffff¨\0\xffe0\xffffv\5\20\0\x2f18\0\1\0\1\0Cas\0\xffe8\xffffv\0$\0\x1ae0\0\1\0\0\0\xffd8\xffffGrafické adaptéry\0\xffd8\xffffv\v>\0\x1b30\0\1\0\1\0Isal\x33722\0\0¸\xffffDesk.Cpl,DisplayClassInstaller\0\0\0\0\xffd8\xffffv\20:\0\x1ba0\0\1\0\1\0Tobehoe\x302d\xffc0\xffffhcp://help/tshoot/tsdisp.htm\0\0\xffe8\xffff\x1aa8\0\x1ac8\0\x1b08\0\x1b78\0X\0\xffe8\xffff.NTx86\0\006\xffd8\xffffv\r\4\1\0\1\0SseSatpin\0\0\0\xffd0\xffffatapi_Inst_primary\0\0\0\0\xffe8\xffffmsv1_0\0\0\0\0\b\0\x9e8\0\xffe0\xffff5.1.2600.2180\0\xfff0\xffff€\xff67\xffff\xffffŔ\37\xffe8\xffffKeyboard\0\0\xfff0\xffffŔ\0\x16f0\0\22\xffe0\xffffv\5L\08\3\1\0\1\0CSD\0\xffe0\xffffv\4\b\0ˆ\0\3\0\1\37TmĐ\37\xffd8\xffffv\f\4\xffd8\xffff255.255.255.0\0\0\0v\22\xffc8\xffffRealtek HD Audio output\0v\t\xffe0\xffffv\5\20\0\0\1\0\1UCasHhi\x2000\0\xffff\0\0\0\0\0\0P]]\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\045€\xffffC\IDW\yt\x336d2io.l\x2e00dl\00_sĎ•\0\0\0\0\0\0\0\0\0\0\0\2\0\21\0\24\0\24\0\2\0\xfffe\xffff\0\0\0\0\0\0\0\0NOD32 protected [MSAFD Tcpip [RAW/IP]]\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0v\32€\xffffC\IDW\yt\x336d2io.l\x2e00dl\00_sĎ•\20\0\2\0\21\0\0\0\0\0\0\0»\0\0\0NOD32 protected [RSVP UDP Service Provider]\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\00000 \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0\x2fa8\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\n\0\f\0\x3030\x3030\x3030\x3030\x30301\x27e6c \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0Ř\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\v\0\f\0\x3030\x3030\x3030\x3030\x3030\x3231Ř\0\xffd0\xffffv\21\x378\0 \35\3\0\1cPceCtlgt\x106d\0\x27c5c \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0P\35x\37\xffff\xffff\0\0\0\0"\0\x378\0\22\0\f\0\x3030\x3030\x3030\x3030\x30301\x27ecc \xffffn lB,É\0\0˜o\0\0\0\0\xffff\xffff\xffff\xffff\1\0ŕ\0x\37\xffff\xffff\0\0\0\0"\0\x378\0\f\0\f\0\x3030\x3030\x3030\x3030\x3030\x3331 D°\xffffSbrnice PCI 0, zaYízení 1, funkce 1\0x¨\xffffn nť\xe4adČ\0\0\x828\0\0\0\0\0\xffff\xffff\xffff\xffff\2\0\x2d28\0\xda90\6\xffff\xffff\0\0\0\0"\0\0\1\0\a\0Lgo\xff66\xffd0\xffffv\21\0Đ\0\n\0\1\0Bscofget\x3372\x2d338\x3032\xfff0\xffff\x2cf8\0˜\0A2\xffc0\xffffl\3\xf870W\xff6c\xfaa8W(Y{·(Y{·\x2cc0\0\xafe\xecea6=7FF;96\xffd8\xffffv\nH\0 \27\1\0\1\0DvcDs\0Č\0č\xffffs\0\x3078\0\xa898\0\x90\0\24\0\xffff\xd860\3Đ\5Ř\24\xfff0\xffff\0\0\0\30\31\2\0\0\x500 \0\x220\0\0\0\0\0\0\0\0\0\0\0\x500 \0\x220\0\0\0\x500\22\0\xff88\xffffn ˘Ú\xef4bČ\0\0H\x81\1\0\0\00\0\xffff\xffff\0\0\xffff\xffff\xda90\6\xffff\xffff \0\0\0\0\0\0\0\23\0(\0VN\x3031D&E\x305f3\x2633SBY_230\x2633RVA\xffe8\xffffoem0.inf\0\25\xfff0\xffff\xf200\xf8d8\xffff\xffff\0\0\xfff8\xffffŘ\0\xfff8\xffffŕ\0 \xffffNVIDIA GeForce 7300 GT \0í se standardem VGA)\0\0\xffd0\xffffv\23J\0\x3360\0\1\0\1PLctoIfrain\1e\xffe0\xffffv\6\b\0ŕ\0\3\0\1\0Bud\0\xfff0\xffffl\1h\0#\0°\xffffSbrnice PCI 2, zaYízení 0, funkce 0\0\0\xffd8\xffffv\f\4\0\x302\0\n\0\n\0\xffff\xffff\xffe8\xffffmshdc.inf\0H\xffffn Ú\x104f\xe2c5Č\0\0ŔI\1\0\0\0\x3350\0\xffff\xffff\1\0\x3298\0č\0\xffff\xffff\16\0\0\0\34\0|\0\0\0h\0\x2323\x233fP\x2349VN\x3031D&E\x305f1\x2631SBY\x305f\x3030\x3030\x3030\x2630RVA#&edb&&0\x2338{b\x3235\x3130\x2d64\x3266\x3266-\x3366\x2d628b\x332d0ff\x333559\xfe30\xffffČ\0\5\0\0\0\b\0\0\0\0\0\0\0\1\0\1\1\r\0\x301\1\0\0\0\0\0\xdc07\0\0\0\0011\0\b\0\b\0\0\0\0\0\xffff\xffff\0\0\0\0\20\0\20\0\0\0\0\0\xffff\xffff\0\0&CC_0680\0\0\xffd8\xffffv\r\0Đ\0\a\0\1\0CmailIs\x3030\xffe8\xffff7-1-2001\0\0\xfff0\xffffx\3\x2800\1\0\0\xffe8\xffffl\2Č\0Á«8I‘n ^\x1067\xe2c5Č\0\0\x1080c\0\0\0\0\xffff\xffff\xffff\xffff\1\0H\0č\0\xffff\xffff\0\0\0\0.\0\22\0\1\0\4\0\x3030\x31301.\xffd0\xffffv\27\22\0\0\1\0\0010IsaldipaDies\xfe30\xffffČ\0\5\0\2\0\0\0\0\0\0\0\0\0\1\0\1\1\r\0\x301\1\0\0\0\xf8ff\0\0\x308\1\0\0\0\1\0\0\0\0\0\0\0\1\0\1\1\a\0\0011\0@\0\1\0\x1c00\0\0\0\x1c3f\0\0\0\0011\0@\0@\0\0\0\0\0\xffff\xffff\0\0\0\0\0\0\0\0\22\0\xffd8\xffffv\0166\0°\0\1\0\1vDvcIsacc\xffe8\xffffcmd.exe\0\xe68b\x2f7d\xfff0\xffff\0\0\0\0C:\xffe8\xffffl\2 \ed\x29c4\e\xe918H\xffe0\xffffRtkHDAud.sys\0%¨\xffffn Ú\x104f\xe2c5Č\0\0Č\0\0\0\0\0\xffff\xffff\xffff\xffff\1\0\0č\0\xffff\xffff\16\0\0\0\30\0Ň\0\0\0\1\0#11.\xff80\xffffPCI\VEN_10DE&DEV_01D1&SUBSYS_00000000&REV_A1\4&5e1d6be&0&0078\0 \xffffn ˘\x2e46\x2f8É\0\0\x31f0\0\2\0\1\0\0\0\0\0X\34\xfff0\xffffNO\0\1\xe828b\xffd8\xffffv\f\24\0 \0\1\0\1\0PoieNm\0\0\xffe8\xffffl\2Č\0d\x29c4€\0\xe918Hhi\xffff\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0=8€\xffffytmo\x2574\yt\x336d2mwo\x2e6bdl\00_sĎ•\0\20\0\2\0\21\0\0\0\0\0\0\0»\0\0\0MSAFD Tcpip [UDP/IP]\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\00060¨\xffffn ˘Ú\xef4bČ\0\0@\0\0\0\0\0\xffff\xffff\xffff\xffff\2\0\x18c0\0\xda90\6\xffff\xffff\0\0\0\0"\0Č\0\1\0\a\0Lgofč\xffffPCI\VEN_10DE&DEV_0393&REV_A1\0PCI\VEN_10DE&DEV_0393\0PCI\VEN_10DE&CC_030000\0PCI\VEN_10DE&CC_0300\0PCI\VEN_10DE\0PCI\CC_030000\0PCI\CC_0300\0\0iay\xffd0\xffffwdmaud,swmidi,redbook\0\xffe0\xffffv\5\4\0\1\0Isal\x33722\0\0\xffd8\xffffv\r\4\xffffv\bč\0Ř\5\3\0\1\0APlc\xfff8\xffffđ\0\xfff0\xffff-53\0˜\a\xffe0\xffffv\b\4\0@\0\1\1\x1c80\0\0\0@\0\x302\0\17\0\17\0\xffff\xffff\xffe0\xffff5&46c3b90&0\0Ř\0\xffd8\xffffv\16z\0Ŕ\27\1\0\1 DvcIsacn\xfff0\xffff°\27Ŕ\27(\27\xfff0\xffffl\1ŕ\0\xe918H\xff98\xffffs\0\x80\0\x2468\26\22\0L\0\10\0@\0\0\0\24\0\2\34\1\0\22\0\0\0\x500 \0\x220\0\0\0\x500\22\0\0\0\xffd8\xffffv\n\22\0Đ\22\1\0\1\0DieDt\0\0\0\xffe0\xffff5.10.0.5259\0\xe1a06\xffd8\xffffv\16\b\0\x1778\0\3\0\0015DieDtDtG\xffe8\xffffnv4_disp\0\0\xffe0\xffffv\5\20\0h\0\1\0\1\0Cas\0\xffe0\xffffv\6\4\4\0\1\0Lai\0\xfff8\xffff(\0\xffe0\xffffv\4T\0\xe7f8\r\3\0\1'Bs
\xffe0\xffffv\b\4\0\0\xffd8\xffffv\f\24\0¨\0\1\0\1\0PoieNm\0\0\xffd8\xffffv\n\24\0\x1a60\0\1\0\16DieDt\0v!\xffd8\xffffv\n<\0Č\23\1\0\1 DieDs4\x1810 \xffd0\xffffv\27\20\0\x1d18\0\a\0\1\0Atetcto akgs\xfff0\xffffPorts\0\xfff0\xffff-1\0\0\0\0\xffd8\xffffv\16\x98\0 \0\1\0\0013DvcIsac3\xffe0\xffffv\b\4\xfff0\xffffl\1\0 \x8d8hi\0¨\xffffn îA\xec2fČ\0\0˜\0\0\0\0\0\xffff\xffff\xffff\xffff\2\0\x2fb0\0\xda90\6\xffff\xffff\0\0\0\0"\0Č\0\0\0\a\0Lgof\xfff0\xffff15\0\0\0\0\xfff0\xffffl\1č\0\xab32š\xffe0\xffff5.1.2600.2180\0\xffe0\xffffv\a\24\0°\0\1\0\1\0Ifah\xffd8\xffffv\20\30\0ˆ\0\1\0\1\6MthnDvcI\xffd8\xffffv\nL\0Č\0\1\0\1\0DieDs\0\0\0\xffe0\xffffpciide_Inst\0\0\0€\xffffC\IDW\yt\x336d2io.l\x2e00dl\00_sĎ•pip_{AE8976A2-A4D8-468C-8204-C835\x2066\0\0\0\0\0\0\0\b\0\x1b20Ĺ\x1c79b\xdca5\x28be\x1b3fsç\0\2\0â\0í\0\b\0\0\0Śž\xd5c‘\0\34\6\0\2\0\20\0\20\0\1\0\6\0\0\0\0\0\0\0\0\0\0\0NOD32 protected [RSVP TCP Service Provider]\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\00000\xffc0\xffffpci\cc_0101\0&dev_037f&cc_0101\0\xff98\xffffPCI Standardní dvoukanálový Yadi
IDE\0ontroller\0005x\xffd8\xffff\x17e8\0\x1938\0Ŕ\0P\0x\0 \0˜\0Ŕ\0u\0\xfff0\xffff\n<\0p\27\1\0\1rDvcDsfra\xfff0\xffffH\27č\27\27\xfff8\xffffŔ\0\xffd8\xffffv\n\30\0č\0\1\0\1\0Ifeto\0\0\0\xffd8\xffffv\f\24\0 \0\1\0\1\0PoieNm\0\0\xffd0\xffffMicrosoft\0poration\0\0\0\0\xffd8\xffffv\16\b\0\x2f40\0\3\0\1\0DieDtDt\0\xffd8\xffffv\n\22\00\0\1\0\1\0DieDt\0\0\0\xffd8\xffffv\r\34\0ŕ\0\1\0\1\0DieVrin\0\b\00\0¨\xffffn Ań\xe2c5Č\0\0˜@\1\0\0\0đ\0\xffff\xffff\b\0P\0č\0\xffff\xffff\n\0\0\0 \0000\0\4\0\4\0\x30300\1r\xffc0\xffffl\5Ř@\x2140&¨@\x2141&x@\x2142&\xf648@\x2143&P\0\x2144&E-BFC1-0\xffe0\xffffv\6X\0\0\1\0\1}Die0 \xffff{4D36E96E-E325-11CE-BFC1-08002BE10318}\0004\0\xffff\xffff\xffd8\xffffč\0H\0p\0P\0°\0\x660\08\0č\00\0¨\xffffn Ań\xe2c5Č\0\0P\0\1\0\0\0H\0\xffff\xffff\0\0\xffff\xffffč\0\xffff\xffff\16\0\0\0\0\0\0\0\0\0\5\0MDS0¨\xffffn Ań\xe2c5Č\0\0\0\0\0\0\0\xffff\xffff\xffff\xffff\1\08\0č\0\xffff\xffff\0\0\0\0\0\0\2\0\0\0\a\06\x2c3040\xffe8\xffffMicrosoft\0č\xffffPCI\VEN_10DE&DEV_0368&REV_A2\0PCI\VEN_10DE&DEV_0368\0PCI\VEN_10DE&CC_0C0500\0PCI\VEN_10DE&CC_0C05\0PCI\VEN_10DE\0PCI\CC_0C0500\0PCI\CC_0C05\0\0ak\0\b\0Ŕ\0¨\xffff{E02D93D0-5827-4233-8920-FABA62A46B6A}\0\0v\0\xfff0\xffff\x80\0\0\0\xe68b\x2f7d\xffe0\xffff5.1.2600.2180\0\xffe0\xffffv\bč\0 \5\3\0\1\0DPlc\xffd8\xffffv\20\30\0H\0\1\0\1\6MthnDvcI\xffc0\xffffpci\cc_0101\0&dev_037f&cc_0101\0\xffd8\xffffv\nL\0¸\0\1\0\1\0DieDs\0\0\0\xfff0\xffff\x80\0\0\0\0\0\xffc0\xffffRealtek Semiconductor Corp.\056\xffd0\xffffv\21L\0ŕ\5\3\0\1\0DPoesroiy\0\0\0\xfff0\xffffl\1@\0\x28c1 \xffd8\xffffv\16\b\0\xa50\0\3\0\1\0DieDtDt\0\xffe8\xffffMonitor\0\0\0\xffe0\xffff%SystemRoot%\0\0\xffd0\xffffv\21D\0\xffffv\16\b\0X\0\3\0\1\0DieDtDt\x3032\xffd8\xffffv\n\22\0Ř\0\1\0\1\0DieDt\0đ\0\xffd8\xffffv\r\26\0đ\0\1\0\1\0DieVri\x96e\0\xffe0\xffff5.1.2001.0\0\0\0\xffe0\xffffv\b\b\0Đ\0\3\0\1\0\x303120\x3032\xffe0\xffffv\0036\0P\0\1\0\1lMgmo\xffc0\xffff(Standardní typy monitoro)\0\0\1ý\xffd8\xffffv\0200\0\0\1\0\1\0MthnDvcI\xffd8\xffffv\n \0 \0\1\0\1oDieDs\0\x80\0\xffe0\xffffpciide_Inst\0\0\0hi&SUBSYS_0C111458&REV_A2\0PCI\VEN_10DE&DEV_0368&SUBSYS_0C111458\0PCI\VEN_10DE&DEV_0368&CC_0C0500\0PCI\VEN_10DE&DEV_0368&CC_0C05\0\0\xffd8\xffffv\r\0X\0\a\0\1xCmailIsA\b\0v\r\30\0°\0\1\0\1rDieVrinG\xffd8\xffffv\20D\0\x2e08\1\1\0\1\36MthnDvcI\xffe0\xffffv\5\16\0\x28e0\1\1\0\1\0Cas\0\xffd8\xffffIntcAzAudModel\0e\x2064f\xffe8\xffffv\0"\0P\0\1\0\0\0\xffd8\xffffv\20\4eIfetoEt\x3237\xffe8\xffffv\0\22\0h\0\1\0\0\0\xffd8\xffffv\fî\0@\0\1\0\1\0SmoiLn\0\0\xffd8\xffffv\16\x98\08\0\1\0\1@DvcIsacA\xffd8\xffffv\fî\0ŕ\0\1\0\0017SmoiLn\xe6b07\xffd8\xffffv\n\4\1\0`\0\xfff0\xffff4f02\0\1\xffd8\xffffv\f\22\0x\0\a\0\1
UpritrQ\xffd8\xffffv\f\x8c\0Ř\0\1\0\1\SmoiLnWI\xffe0\xffffv\5\2\0\0\xfff0\xffff\x80\0\0\0\0\0\xff98\xffffPCI Standardní dvoukanálový Yadi
IDE\0ontroller\0Sc\xffd8\xffffx\0P\0x\0Đ\0ř\0 \0 \0ˆ\0Ř\0\xffd0\xffffv\22\4dc\0ie\xff90\xffffn Ań\xe2c5Č\0\0ŕZ\2\0\0\0č\0\xffff\xffff\t\0h\0\xda90\6\xffff\xffff"\0\0\0\32\0X\0\0\0\32\0\x26354\x3363b\x2630\x26301\x333379&\x2632\x30300E\xffc0\xffffl\5¸\0¨\xb7@ZÝŔZ\xd825€XZý®ZE\1\0\1DvcD\b\0˜\0\xffe8\xffffUSERNAME\0\0\xfff0\xffffMouse\0\xffd8\xffffv\nD\0p\0\b\0\1\0BoCniipa\xffe8\xffffDisplay\0\0\0\xffd8\xffffv\nd\0H\0\b\0\1\0BoCnieeO\xffd8\xffffv\n0\0\x32a0\0\1\0\1\35DvcDsfra\b\0lx\xffe8\xffff7-1-2001\0\0\xfff0\xffffŕYY@YpY YđY YxY¨YY8YŘY YhYYĐYˆY@YY¸YY8Y YŔYđYPY€Y°YŕYY@YpY YĐY\0\4\0\1\xdfc3ERcvr\2e\xffe0\xffffv\b\b\0Ŕ\0\3\0\1\0\x303120\x3032\xff98\xffffn ^\x1067\xe2c5Č\0\0¸\0\0\0\0\0\xffff\xffff\xffff\xffff\1\0Ř\0\xe478\6\xffff\xffff\0\0\0\0\20\0\0x\0\a\0\1eHrwrI_mo\xffc8\xffffMonitor\Default_Monitor\0\0\0\xffd8\xffffv\r\24\0Ř\0\a\0\1oCmailIs\0\xffe8\xffff*PNP09FF\0\0\xffe8\xffffl\2\x10f8c\x2140&h\0\x2141&\xffe8\xffffnv4_disp\0o\b\0v\5\xfff0\xffff\x80\0\0\0\0\0\xfff0\xffffn nť\xe4adČ\0\0H\x81\1\0\0\0X\0\xffff\xffff\0\0\xffff\xffff\xda90\6\xffff\xffff\36\0\0\0\0\0\0\0\20\0(\0VN\x3031D&E\x305f3\x2633SBY_\x3030\x31304\x2638RV\x3241\xfff0\xffff\x80\0\0\0\xe68b\x2f7dč\xffffPCI\VEN_10DE&DEV_0373&REV_A2\0PCI\VEN_10DE&DEV_0373\0PCI\VEN_10DE&CC_068000\0PCI\VEN_10DE&CC_0680\0PCI\VEN_10DE\0PCI\CC_068000\0PCI\CC_0680\0\0\0č\0\xfff0\xffffcdrom\0\xfff0\xffff\1\0\1\0\0\0\xffd8\xffffv\f\4v\b\16\0X\0\a\0\1\0Otoa\xfff0\xffffcdrom\0\xffe0\xffffv\3\16\0¸\0\1\0\1,Mg,5\xffe8\xffffNVIDIA\0I\0\0\xffd0\xffffv\21Č\0€\0\n\0\1\0Bscofgetr\0\x740\0\xffd8\xffffv\n$\0P\0\a\0\1eHrwrIe&d\xfff0\xffff(\0`\0¨\0\xffe0\xffffv\5\20\0¨\0\1\0\1\0Cas\0\xffe0\xffffv\4\6\0 \0\1\0\1\0Io\0\0ř\xffff\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\a\0¨\xffffn ^\x1067\xe2c5Č\0\0¸\0\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\xda90\6\xffff\xffff\0\0\0\0\0\0\0\0\1\0\a\0Lgof\xffe8\xffff6-6-2001\0\0\xfff0\xffffytmo\x2574\yt\x336d2rvs.l\0\00_sĎ•žˆž^Ä\0 ]°ž\6\0\2\0\20\0\20\0\2\0\21\0\0\0\0\0\0\0»\0\0\0RSVP UDP Service Provider\0\1\0äž\1\0\xee60ŕ\0\0\xfb3d€ž\0\0-89AF-8ADCBF5E65B5}\0DCBF5E65B5}\0žtÜŔž–‘\x6eb‘Xž\xf018\x2d1\20\0˛_^Ü@\0ôž–‘\x6eb‘\1\0Xž\4\0\0\0\0Ę\xfa4cž–‘\x6eb‘\1\0Xž–‘\x6eb‘\0\0\0\0X\0\x6eb‘\1\0Xž\1\0\0\0(\0\xd838(\xf1d4ž\0\0\xff68ŕ*\34\0\0EM\Curre\f\0\34\0ˆ\34\0Ę–‘–‘=8€\xffffytmo\x2574\yt\x336d2rvs.l\0\00_sĎ•\6\0\2\0\20\0\20\0\1\0\6\0\0\0\0\0\0\0\0\0\0\0RSVP TCP Service Provider\0ˆ\34\0\0\20\0Pž¸b \0\xf550ŕ\34ôž\0\34\b\0\0\0(ž\xd5c‘\0\34\0Ę\0\0@\xd5c‘\0\34\xe91‘\x608\34m‘\xe428\x304\0\0\b\0\0Ę\1\0ř\34\2\0H\3\0\2\0\xe428\x304ř\34Đ\xf618\x2d1€\34\xff68ŕ\34\0\0 \0\xff68\f\0\4\0\x2000\0č\34\30\0Đ\0\34\1\0\\34č\34\4\0\xeb18\x310Č\34\0\34O\xe444\x304`\0€\34\0\0Đ<žF‘\16\0Đ\0\340Đ\0\0ž\xd5c‘\0\34\xe91‘\x608\34m‘\xfe60\0\0$0\0Ę\r\00Đ\0\0\0\0Ä\0\0\08Đ\0\0\0\0\0\0Ä\0ÜžČ\34Ä\0\4\0\3\08ĐČ\34\xfe60ŕ\0$0\f\16<]\0\0¬ž$0\0\0\xfe60žlq\xfe60\0\0$0ŕž60\xffd8\xffffv\17\4\xffffŔ\0\xffd8\xffffv\f\4\xffffv\v\36\0ř\0\1\0\1\0Cmoetd\0\0\xfff0\xffff@\0\24P\24\xfff8\xffffh\0\xffd8\xffffms_ptiminiport\0\0\0\0\xfff8\xffff€\0\xffe0\xffffv\5\16\0H\0\1\0\1\0Cas\0\xffe8\xffffSystem\0\0\0\0\xffe8\xffffv\0&\0x\0\1\0\0\0\xffd0\xffffSystémová zaYízení\0\0\0\0\xffe0\xffffv\4\b\0˜\0\1\0\1\0Io\0\0\xffd8\xffffv\r\4¨\0\xfff0\xffffnvata\0\xffd8\xffffVýchozí monitor\0IN\xffd8\xffffv\16\4\f\xfff0\xffffUSB\0\5\0\xfff8\xffffř\0\xff98\xffffOvlada
e nepodporující technologii Plug and Play\0\0\xfff8\xffff \0\xfff8\xffff \0\xfff0\xffff\2\0\1\0\2\0\xfff8\xffffŘ\0\xffd8\xffffv\tN\08\0\1\0\1aCasUDdvo¨\xffff{4D36E96A-E325-11CE-BFC1-08002BE10318}\0\0Te\xffe0\xffffv\a\f\0ˆ\0\1\0\1.Srie\xffc0\xffffIMAGEDRV\NeroImageDrv\0000\0\nv\xffd8\xffffv\16$\0P\0\1\0\0010DvcIsacs\xffd8\xffffv\r\4\1\0\1\0DvcIsac\0\xffd8\xffffv\fz\0đ\0\1\0\1\0SmoiLn\0\0\xfff0\xffff@\0 \0\1\0\1\0EuPoPg\x33732¸\xffffNetCfgx.dll,NetPropPageProvider\0\0\0\xfff0\xffff-5\0\0\0\0\xffd8\xffffv\16\b\0\x1988\0\3\0\1\0DieDtDt\0\b\0Č\0\xffd8\xffffv\n\26\0\x1c38\0\1\0\1\0Ifeto\0\0\0\xfff0\xffff\x3270\24\350\35\xffd8\xffffv\f\24\0\0\1\0\1\0PoieNm\0\0\xffe8\xffff\3\0\1\0\2\0\3\0\0\0\xfff0\xffffUSB\0\x3390\0\xffd8\xffffv\r\26\0 \0\1\0\1\fDieVrin\f\xffd8\xffffv\f\x8a\0X\0\1\0\1\0SmoiLn\0\0hiSíeové adapatéry\0\0\xffe8\xffffoem5.inf\0\27\xffe0\xffffv\a\30\0ŕ\3\1\0\1\25Ifah\xfff0\xffff¨tŔ\23ay\xfff0\xffff€%@%\x3368%\xffc0\xffffl\4\xd848F\xdfbf\xfa87\xdf78F26\x528G\xe8ea.\x618G\x2a86\x618G\x2a86200 1920 \xffffn şo\xe2c5Č\0\0 \0\4\0\0\09\xffff\xffff\0\0\xffff\xffff¸\17\xffff\xffff$\0\0\0\0\0\0\0\1\0\r\0Cnrle\x30305O¨\xffffn ơ\x2f8É\0\0 \0007\0\0\0\xddf0"\xffff\xffff\4\0¸\22č\0\xffff\xffff.\0\0\0000\0Č\0\0\0\a\0Cnrl\xffd8\xffffv\n\22\0P\0\1\0\1\0DieDt\0\0\0\xffe8\xffffNVIDIA\0\0\0\0\xfff0\xffffpci\0\xff88\5\xffe0\xffffv\a\4cDs\0\0\0\xffd8\xffffv\nF\0\24\1\0\1\0DieDs\0\0\0\b\0°\0\xffe0\xffff5.1.2535.0\0\0\0\0\xffe0\xffffv\5\16\0@\2\1\0\1 Cast\xffe8\xffffusbehci\0ie\xffd8\xffffv\20\36\0ř\2\1\0\1\0MthnDvcI\xffe0\xffffLegacyDriver\0\0\xfff0\xffffhdc\0\0\0\xffe8\xffffv\0b\0€\0\1\0\0\a\xffe8\xffffSystem\000002¨\xffffn \xdc54Y\x1a22Ç\0\0H\0\3\0\1\0\x3031D\x3130\x3030\xfff0\xffff0\0P\0,\1¨\xffffn \xdc54Y\x1a22Ç\0\0\0AlctoOdr\xffe0\xffffv\3\x248\0@\0\n\0\1\0Pi\0\0\xffe0\xffffv\4h\0\0\n\0\1\0Ro¸\6\xfff0\xffffř\0p\0Ŕ\0\xff98\xffffn \xdc54Y\x1a22Ç\0\0`\0\0\0\0\0\xffff\xffff\xffff\xffff\6\0Ŕ\0č\0\xffff\xffff\0\0\0\0*\0\x528\0\1\0\21\0RsreRsucs\60\6\xffd8\xffffv\n\0€\0\n\0\1\6PSadr\6`\6\xffe0\xffffv\4\26\0˜\0\1\0\1\0Ro\0\0\xfff0\xffffhdc\0\xe868\a°\xffff\x248\0\0\0\0\0\0\0\0\0\0\0\0\0\1\0\1\1\21\0\0\0\0\0Ď\0\0\0\0\0\0\0\0\0\0\xffffh\0\0\0\0\0\0\0\0\0\0\0\0\0\1\0\1\1"\0\0\0\0\0\0\0\0\0đ\0\0\0ř\0\0\0\0\0\0\0\0\0\0°\0\0\0\x3cf\0\0\0\0\0\0\0\0\0\0č\0\0\0\x3ff\0\0\0\0\0\0\0\0\0\0Î\0\0\0Ď\0\0\0\0\0\0\0\0\0\0\0\0\0\0\v\0\v\0\0\0\0\0\0\0\0\0\0\0\0\n\0\n\0\0\0\0\0\0\0\0\0\0\0\0\2\0\2\0\0\0\0\0\0\0\0\0\0\0\0\0\16\0\16\0\0\0\0\0\0\0\0\0\0\0\0\6\0\6\0\0\0\0\0\0\0\0\0\0\0\0\f\0\f\0\0\0\0\0\0\0\0\0\0\0\0\1\0\1\0\0\0\0\0\0\0\0\0\x300\0\0\0\0\0\0\0\0\20\0\0\xffff\xffff\0\0\x308\0\0\0\0\0\0\0\0\17\0\0\xffff\17\0\0\x308\0\0\0\0\0\0\0\0\b\0\0\xffff\v\0\0\x308\0\0\0\0\0\0\0\0\b\0\0\xffff\17\0\0\x308\0\0\0\0\0\0\0\0\b\0\0\xffff\xffbf\0\0ŕ\0\n\0\1\6BoeMmt8\6\xffd0\xffffv\25\0\0\n\0\1\6Gtwy\x30350okrud\6\xffe8\xffffl\2Đ\0\xa4c2L€\0G\xf6f6\xffe0\xffffPCStandard\0\0\0\0\xffe0\xffffv\3\26\0 \0\1\0\1\0Pi\0\0\xfff0\xffff1\0\0\0\0\0\xffd8\xffffv\20H\0\xeaf0\0\1\0\1\0SseBoDvc\xfff0\xffffnv\0\x28a6\0\xffd8\xffffVýchozí monitor\0vc\xffd8\xffffv\v<\0p\0\1\0\1\0Isal\x33722\0\0\xffc0\xffffNetCfgx.dll,NetClassInstaller\0\xffd8\xffffv\0162\0\xf258\27\a\0\1\0CIsalr\x32330\xffe0\xffffv\4\4ytmo\x2574\yt\x336d2mwo\x2e6bdl\00_sĎ•\0\0\0\0\0\0\0\0\0\0\0\0\0\2\0\2\0\20\0\20\0\3\0\0\0˙\0\0\0\0\0»\0\0\0MSAFD Tcpip [RAW/IP]\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0˜\0\xffe0\xffffv\a\30\0Đ\24\1\0\1\25Ifah\xffd8\xffffRoot\PNPC031\0000\0\b\0¨\0\xfff0\xffff1\0\0\n\xe918H\xfff0\xffffatapi\0\xff70\xffffl\b\x17d8\1\xa9a5; \0\xa9a6;\xe8c0\0\xa9a7;\17u\x2a82H\17+zč\17\x24a040E___________________________1.0K____#5&85253ab&0&0.1.0#{1186654d-47b8-48b9-beb9-7df113ae3c67}\0\0\0\0\xff60\xffffIDE\CdRom_NEC_DVD_RW_ND-3500AG___________________2.1B____\5&85253ab&0&0.0.0\0\xe4d07\xff70\xffff\\?\IMAGEDRV#NeroImageDrv#0000#{2accfe60-c130-11d2-b082-00a0c91efb8b}\0\xffd8\xffffv\16"\0X\0\1\0\1\0DvcIsac\0\xffd8\xffffv\16$\0 \0\1\0\1\0DvcIsac\0\b\0ř\0\xffe0\xffffv\b\b\0(\0\3\0\1\0\x3031202\xff08\xffff\\?\IDE#CdRom_NEC_DVD_RW_ND-3500AG___________________2.1B____#5&85253ab&0&0.0.0#{1186654d-47b8-48b9-beb9-7df113ae3c67}\09`9\xff80\xffff\\?\PCI#a347scsi#0000#{2accfe60-c130-11d2-b082-00a0c91efb8b}\0004\xffd8\xffffRoot\SYSTEM\0000\0\0\xffd8\xffffv\f\0p\0\1\0\1\x304SmoiLnc’\xffd8\xffffv\f\0@\0\1\0\1\0SmoiLn\0\0\xffd8\xffffv\fÔ\0\xda80\0\1\0\1\0SmoiLn\0\0\xffd8\xffffv\f\0\xe1a0\0\1\0\1\0SmoiLn\0\0\xffd8\xffffv\0164\0\xe2b8\0\1\0\1\0DvcIsac\0\xffe8\xffffi8042prt\0\0\xfff0\xffff1\0\0\fŘ\f\xfff0\xffff\0\0\0\x2ff\0\0\0\0\0\0\0\0\0\0°\0\0\0»\0\0\0\0\0\0\0\0\0\0Ľ\0\0\0ľ\0\0\0\0\0\0\0\0\0\0Ŕ\0\0\0ß\0\0\0\0\0\0\0\0\0\0\x3f8\0\0\0\x3ff\0\0\0\x300\0\0\0\0\0\0\0\0\n\0\0\xffff\v\0\0\x308\0\0\0\0\0\0\0\0\xfff0\0\0\xffff\xffff\0\0\0\0đ\xffff\0\0\0\0\0\0\0\0\0\0\0\0\0\1\0\1\1\a\0\xf000\0\0\xffff\xffff\0\0\0\0\xffe0\xffffPCStandard\0\0\0\0\xffe0\xffffč\0\0\1\0\2\0\xff98\xffffn \xdc54Y\x1a22Ç\0\0ŕ\0\0\0\0\0\xffff\xffff\xffff\xffff\1\0H\0č\0\xffff\xffff\0\0\0\0\26\0f\0\0\0\23\0AresoTRsoe\0\0\xffd8\xffffv\vf\0ř\0\a\0\1\0Pu\x2620 lyř\0\xff90\xffffCurrentControlSet\Control\CriticalDeviceDatabase\\0\0\0\0\0 \xffffn ¨ęłÇ\0\0ŕ\0\0\0\0\0\xffff\xffff\xffff\xffff\24\0\xa838\0č\0\xffff\xffff\0\0\0\0L\0\xa4\0\1\0\20\0FlsoTBcu\xffd8\xffffv\f:\0đ\0\a\0\1\0A\x2052L\x2067Fl\0\0\xffc0\xffff%SystemRoot%\repair\asr.log\0\0\0\xffd8\xffffv\16:\0X\0\a\0\1\0A\x2052Er\x2072Fl\0\xffc0\xffff%SystemRoot%\repair\asr.err\0\0\0\xffd0\xffffv\21.\0\x9fc8\0\a\0\1\0Cin i\x2065Cce\0\0\0\xffc8\xffff%SystemRoot%\csc\* /s\0\0\0\0\0hirProfile%\index.dat /s\0\0\0\0\xffd8\xffffv\20\36\0¸\0\a\0\1\0Mmr a\x2065Fl\xffd8\xffff\Pagefile.sys\0\0\0\0\0\xffc0\xffffv!\\0 \0\a\0\1\0Mcoo\x2074Wie\x2820Boal tt)\0\0\0 \xffff%SystemRoot%\Registration\*.clb\0\*.crmlog /s\0\0\xffe0\xffff%TEMP%\* /s\0\0\0\xffc8\xffffv D\0Ř\0\a\0\1\0Mcoo\x2074Wie\x2820Sri\x2065Sa\x2965¸\xffff%SystemRoot%\system32\NtmsData\*\0\0\xffe0\xffffv\b6\0@\0\a\0\1\0Ntoo\xffc0\xffff%SystemRoot%\netlogon.chg\0\0\0\0\0\xffd8\xffffv\0166\0đ\0\a\0\1\0Ts ceue\0\xffd8\xffffv\20\36\0Đ\0\a\0\1\0Pw\x2072Mngmn\xffd8\xffff\hiberfil.sys\0\0\0\0\0\xffd0\xffffv\24\x8e\0(\0\a\0\1\0V\x2053Dfu\x2074Poie\0\0\xff68\xffff\System Volume Information\*{3808876B-C176-4e48-B7AE-04046E6CC752} /s\0\0\0\0\0\xffd8\xffffv\16$\0\xa490\0\a\0\1\0Wnoo eu\0\b\0(\0\xffc0\xffff%SYSTEMROOT%\schedlgu.txt\0\0\0\0\0\xffd8\xffffv\17\32\0€\0\a\0\1\0Tmoa\x2079Fls\xffd8\xffffv\nX\0\xa578\0\a\0\1\0W\x2049Wie\0\0\0\xfff0\xffff1\0\0\f@\f\xffd8\xffff%WINDIR%\debug\*\0\0\xffd8\xffffv\nP\0\xa4e0\0\a\0\1\0S\x2053Cin\0\0\0¨\xffff%SystemRoot%\SoftwareDistribution\* /s\0\0\0\0\xffc0\xffffv&\xa4\0\xa698\0\a\0\1eM itiue rnato oriaou \xffff%SystemRoot%\system32\wbem\Repository\* /s\0\0\0\0\xffd8\xffffv\20J\0\xa600\0\a\0\1nCtl\x2067Dtbs°\xffff%SystemRoot%\System32\CatRoot2\* /s\0\0l\xffd8\xffffv\16\xa0\0C:\Documents and Settings\All Users\DRM\* /s\0\0\xffd8\xffffv\vf\0H\0\a\0\1\0Pu\x2620 ly\0\0\xffd8\xffffv\r"\0x\0\a\0\1\0Mu\x2074Mngr\0\xffd8\xffffv\r\xa4\0 \0\a\0\1dBT_eaaaM¨\xffffČ\00\0˜\0 \0\0ŕ\0 \0 \0¨\0ř\0€\00\0Ŕ\0\xa4b8\0X\0\xa5d8\0\xa538\0\xa740\0\xa650\0\xa810\0\x2140&\b\0°\0č\xffffs\0\x2da0\0h\2\t\0 \0\x220\0\0\0\0\0\0\0\0°\0\0\0»\0\0\0\0\0\0\0\0\0\0Ŕ\0\0\0ß\0\0\0\0\0\0\0\0\0\0Ľ\0\0\0ľ\0\0\0\0\0\0\0\0\0\0\x3f8\0\0\0\x3ff\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0\xa6e8\0\0\0\xa6ef\0\0\0\0\0\0\0\0\0\0\xaae8\0\0\0\xaaef\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\0\0\0\0\0\0\0\xdae8\0\0\0\xdaef\0\0\0\0\0\0\0\0\0\0\xdee8\0\0\0\xdeef\0\0\0\0\0\0\0\0\0\0\xe2e8\0\0\0\xe2ef\0\0\0\0\0\0\0\0\0\0\xe6e8\0\0\0\xe6ef\0\0\0\0\0\0\0\0\0\0\xeae8\0\0\0\xeaef\0\0\0\0\0\0\0\0\0\0\xeee8\0\0\0\xeeef\0\0\0\0\0\0\0\0\0\0\xf6e8\0\0\0\xf6ef\0\0\0\0\0\0\0\0\0\0\xfae8\0\0\0\xfaef\0\0\0\0\0\0\0\0\0\0č\0\0\0ď\0\0\0\x300\0\0\0\0\0\0\0\0\n\0\0\xffff\v\0\0\x308\0\0\0\0\0\0\0\0\xfff0\0\0\xffff\xffff\0\0\0\0đ\xffff\0\0\0\0\0\0\0\0\0\0\0\0\0\1\0\1\1\a\0\0\0\0\0\xf800\0\0\xffff˙\0\0\0\0\xfff0\xffff1\0\0\f0\fhi\0\xffd8\xffffv\17\16\0\xa678\0\a\0\1\0Fu\x2074Tlrne\xfff8\xffffŘ\0\xff80\xffff\\?\Root#PNPC031#0000#{2c7089aa-2e0e-11d1-b114-00c04fc2aae4}\0\0\xffd8\xffffv\fz\0°\0\1\0\1\0SmoiLn\0\0\xfff0\xffffl\1h\0#\0\xffc0\xffffCurrentControlSet\Services\*\0\0\xffd8\xffffv\r\24\0\xe8a8\0\a\0\0014CmailIs5(\xffff\\?\PCI#VEN_10DE&DEV_036D&SUBSYS_50041458&REV_A2#3&2411e6fe&0&11#{3abf6f2d-71c4-462a-8a92-1e6861e6af27}\0006f\xffd8\xffffv\16"\0Ř\0\1\0\1őDvcIsac°č\xffff\\?\Root#SYSTEM#0000#{3c0d501a-140b-11d1-b40f-00a0c9223196}\{96e080c7-143c-11d1-b40f-00a0c9223196}&{3C0D501A-140B-11D1-B40F-00A0C9223196}\0\xffd8\xffffv\f\0˜\0\1\0\1\0SmoiLn\0\0\xffd8\xffffv\16"\0X\0\1\0\1\0DvcIsac\0\xffd8\xffffv\fx\0°\0\1\0\1\0SmoiLn\0\0\xffc0\xffffACPI\FixedButton\2&daba3ff&0\0\0\xffd8\xffffv\f\x90\0X\0\1\0\1\0SmoiLn\0\0\xffe0\xffffv\5@\0\xa4c0\24\2\0\1\0Psx\0¨\xffff{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001F0¨\xffffn H„\xe2c5Č\0\0f\1\0\0\0\0\xffff\xffff\b\0¸\0č\0\xffff\xffff\n\0\0\0 \0000\0\4\0\4\0\x30300V \xffe0\xffffv\6X\0Č\25\1\0\1&Die&\xffe8\xffffAmdK8\0sor\0\xfff8\xffff"

scanning hidden registry entries ...

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Control Panel\Cursors\Schemes]
"\f\1e?r?n?é? ?u?k?a?z?a?t?e?l?e? ?"="C:\WINDOWS\cursors\arrow_r.cur,C:\WINDOWS\cursors\help_r.cur,C:\WINDOWS\cursors\wait_r.cur,C:\WINDOWS\cursors\busy_r.cur,C:\WINDOWS\cursors\cross_r.cur,C:\WINDOWS\cursors\beam_r.cur,C:\WINDOWS\cursors\pen_r.cur,C:\WINDOWS\cursors\no_r.cur,C:\WINDOWS\cursors\size4_r.cur,C:\WINDOWS\cursors\size3_r.cur,C:\WINDOWS\cursors\size2_r.cur,C:\WINDOWS\cursors\size1_r.cur,C:\WINDOWS\cursors\move_r.cur,C:\WINDOWS\cursors\up_r.cur"
"\f\1e?r?n?é? ?u?k?a?z?a?t?e?l?e? ?(?v?e?l?k?é?)?"="C:\WINDOWS\cursors\arrow_rm.cur,C:\WINDOWS\cursors\help_rm.cur,C:\WINDOWS\cursors\wait_rm.cur,C:\WINDOWS\cursors\busy_rm.cur,C:\WINDOWS\cursors\cross_rm.cur,C:\WINDOWS\cursors\beam_rm.cur,C:\WINDOWS\cursors\pen_rm.cur,C:\WINDOWS\cursors\no_rm.cur,C:\WINDOWS\cursors\size4_rm.cur,C:\WINDOWS\cursors\size3_rm.cur,C:\WINDOWS\cursors\size2_rm.cur,C:\WINDOWS\cursors\size1_rm.cur,C:\WINDOWS\cursors\move_rm.cur,C:\WINDOWS\cursors\up_rm.cur"
"\f\1e?r?n?é? ?u?k?a?z?a?t?e?l?e? ?(?n?e?j?v?\e\1t?a\1í?)?"="C:\WINDOWS\cursors\arrow_rl.cur,C:\WINDOWS\cursors\help_rl.cur,C:\WINDOWS\cursors\wait_rl.cur,C:\WINDOWS\cursors\busy_rl.cur,C:\WINDOWS\cursors\cross_rl.cur,C:\WINDOWS\cursors\beam_rl.cur,C:\WINDOWS\cursors\pen_rl.cur,C:\WINDOWS\cursors\no_rl.cur,C:\WINDOWS\cursors\size4_rl.cur,C:\WINDOWS\cursors\size3_rl.cur,C:\WINDOWS\cursors\size2_rl.cur,C:\WINDOWS\cursors\size1_rl.cur,C:\WINDOWS\cursors\move_rl.cur,C:\WINDOWS\cursors\up_rl.cur"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E9F81423-211E-46B6-9AE0-38568BC5CF6F}]
"DisplayName"="Alcohol 120% (Trial Version)"

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


Remaining Services :




Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Strong DC++\\StrongDC.exe"="C:\\Strong DC++\\StrongDC.exe:*:Enabled:StrongDC++"
"D:\\stary disk\\Programy\\strong dc++\\StrongDC.exe"="D:\\stary disk\\Programy\\strong dc++\\StrongDC.exe:*:Enabled:StrongDC++"
"C:\\Program Files\\ICQLite\\ICQLite.exe"="C:\\Program Files\\ICQLite\\ICQLite.exe:*:Enabled:ICQ Lite"
"C:\\Strong DC++rc7\\StrongDC.exe"="C:\\Strong DC++rc7\\StrongDC.exe:*:Enabled:StrongDC++"
"C:\\strong dc++rc10\\StrongDC.exe"="C:\\strong dc++rc10\\StrongDC.exe:*:Enabled:StrongDC++"
"H:\\DSRC\\I486_NT\\OBJ\\PTCSETUP.EXE"="H:\\DSRC\\I486_NT\\OBJ\\PTCSETUP.EXE:*:Enabled:PTCSETUP"
"C:\\Program Files\\proeWildfire\\i486_nt\\nms\\nmsd.exe"="C:\\Program Files\\proeWildfire\\i486_nt\\nms\\nmsd.exe:*:Enabled:nmsd"
"C:\\Program Files\\proeWildfire\\i486_nt\\obj\\pro_comm_msg.exe"="C:\\Program Files\\proeWildfire\\i486_nt\\obj\\pro_comm_msg.exe:*:Enabled:pro_comm_msg"
"C:\\Program Files\\proeWildfire\\i486_nt\\obj\\xtop.exe"="C:\\Program Files\\proeWildfire\\i486_nt\\obj\\xtop.exe:*:Enabled:xtop"
"C:\\Program Files\\proeWildfire\\dsrc\\i486_nt\\obj\\ptcsetup.exe"="C:\\Program Files\\proeWildfire\\dsrc\\i486_nt\\obj\\ptcsetup.exe:*:Enabled:ptcsetup"
"C:\\Program Files\\Groove Networks\\Groove\\Bin\\Groove.exe"="C:\\Program Files\\Groove Networks\\Groove\\Bin\\Groove.exe:*:Enabled:Groove"
"C:\\Applic\\proeWildfire\\i486_nt\\nms\\nmsd.exe"="C:\\Applic\\proeWildfire\\i486_nt\\nms\\nmsd.exe:*:Enabled:nmsd"
"C:\\Applic\\proeWildfire\\i486_nt\\obj\\xtop.exe"="C:\\Applic\\proeWildfire\\i486_nt\\obj\\xtop.exe:*:Enabled:xtop"
"C:\\Applic\\proeWildfire\\i486_nt\\obj\\pro_comm_msg.exe"="C:\\Applic\\proeWildfire\\i486_nt\\obj\\pro_comm_msg.exe:*:Enabled:pro_comm_msg"
"C:\\Documents and Settings\\U§ivatel\\Plocha\\sbcl\\SBCL v1.0h.exe"="C:\\Documents and Settings\\U§ivatel\\Plocha\\sbcl\\SBCL v1.0h.exe:*:Enabled:SBCL v1.0h"
"C:\\Documents and Settings\\U§ivatel\\Plocha\\SBCL v1.0h\\SBCL v1.0h.exe"="C:\\Documents and Settings\\U§ivatel\\Plocha\\SBCL v1.0h\\SBCL v1.0h.exe:*:Enabled:SBCL v1.0h"
"I:\\SBCL v1.0h.Skylink\\SBCL v1.0h\\SBCL v1.0h.exe"="I:\\SBCL v1.0h.Skylink\\SBCL v1.0h\\SBCL v1.0h.exe:*:Enabled:SBCL v1.0h"
"C:\\Documents and Settings\\U§ivatel\\Plocha\\SBCL v1.0h.Skylink\\SBCL v1.0h\\SBCL v1.0h.exe"="C:\\Documents and Settings\\U§ivatel\\Plocha\\SBCL v1.0h.Skylink\\SBCL v1.0h\\SBCL v1.0h.exe:*:Enabled:SBCL v1.0h"
"D:\\SBCL v1.0h.Skylink\\SBCL v1.0h\\SBCL v1.0h.exe"="D:\\SBCL v1.0h.Skylink\\SBCL v1.0h\\SBCL v1.0h.exe:*:Enabled:SBCL v1.0h"
"C:\\Program Files\\uTorrent\\utorrent.exe"="C:\\Program Files\\uTorrent\\utorrent.exe:*:Enabled:uTorrent"
"D:\\Satelity\\Programy\\SBCL PREMIERE OK tomek.wysoka\\sbcl_tps\\SBCL v1.0h.exe"="D:\\Satelity\\Programy\\SBCL PREMIERE OK tomek.wysoka\\sbcl_tps\\SBCL v1.0h.exe:*:Enabled:SBCL v1.0h"
"D:\\SBCL PREMIERE OK tomek.wysoka\\sbcl_tps\\SBCL v1.0h.exe"="D:\\SBCL PREMIERE OK tomek.wysoka\\sbcl_tps\\SBCL v1.0h.exe:*:Enabled:SBCL v1.0h"
"C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"="C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE:*:Enabled:Internet Explorer"
"C:\\Program Files\\Codemasters\\Colin McRae Rally 04\\cmr4.exe"="C:\\Program Files\\Codemasters\\Colin McRae Rally 04\\cmr4.exe:*:Enabled:Colin McRae Rally 04 Application"
"D:\\Strong DC++2\\StrongDC.exe"="D:\\Strong DC++2\\StrongDC.exe:*:Enabled:StrongDC++"
"D:\\StrongDC++2\\StrongDC.exe"="D:\\StrongDC++2\\StrongDC.exe:*:Enabled:StrongDC++"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Nero\\Nero 7\\Nero ShowTime\\ShowTime.exe"="C:\\Program Files\\Nero\\Nero 7\\Nero ShowTime\\ShowTime.exe:*:Enabled:Nero ShowTime"
"C:\\Program Files\\PTC Collaboration Tools\\i486_nt\\nms\\nmsd.exe"="C:\\Program Files\\PTC Collaboration Tools\\i486_nt\\nms\\nmsd.exe:*:Enabled:nmsd"
"C:\\WINCMD\\WINCMD32.EXE"="C:\\WINCMD\\WINCMD32.EXE:*:Enabled:Windows Commander 32 bit internationale Version, Dateimanager-Ersatz fuer Windows"
"C:\\Program Files\\ICQ\\Icq.exe"="C:\\Program Files\\ICQ\\Icq.exe:*:Enabled:ICQ"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

Remaining Files :


File Backups: - C:\SDFix\SDFix\backups\backups.zip

Files with Hidden Attributes :

Wed 13 Oct 2004 1,694,208 ..SH. --- "C:\Program Files\Messenger\msmsgs.exe"
Mon 7 Jul 2008 1,429,840 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 7 Jul 2008 4,891,472 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 7 Jul 2008 2,156,368 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Sat 9 Dec 2006 56 ..SHR --- "C:\WINDOWS\system32\57A935958A.sys"
Wed 3 May 2006 163,328 ..SHR --- "C:\WINDOWS\system32\flvDX.dll"
Sat 9 Dec 2006 1,682 A.SH. --- "C:\WINDOWS\system32\KGyGaAvL.sys"
Wed 21 Feb 2007 31,232 ..SHR --- "C:\WINDOWS\system32\msfDX.dll"
Sun 26 Jun 2005 616,448 ..SHR --- "C:\Program Files\eRightSoft\SUPER\cygwin1.dll"
Tue 21 Jun 2005 45,568 ..SHR --- "C:\Program Files\eRightSoft\SUPER\cygz.dll"
Wed 23 Jul 2008 72,704 ..SHR --- "C:\Program Files\eRightSoft\SUPER\Setup.exe"
Fri 27 Oct 2006 15,360 A.SHR --- "C:\Program Files\eRightSoft\SUPER\_Setup.dll"
Sat 26 Apr 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Tue 4 Jun 2002 84,992 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\14_43260.dll"
Tue 4 Jun 2002 44,032 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\28_83260.dll"
Tue 10 Dec 2002 73,766 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\atrc3260.dll"
Tue 10 Dec 2002 65,575 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\cook3260.dll"
Sun 9 Jun 2002 36,864 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\ddnt3260.dll"
Tue 4 Jun 2002 20,480 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\dnet3260.dll"
Tue 10 Dec 2002 102,437 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv13260.dll"
Tue 10 Dec 2002 176,165 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv23260.dll"
Tue 10 Dec 2002 208,935 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv33260.dll"
Tue 10 Dec 2002 217,127 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv43260.dll"
Sun 9 Jun 2002 40,448 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\dspr3260.dll"
Sun 4 Nov 2001 225,280 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\ivvideo.dll"
Tue 10 Apr 2001 225,280 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\qtmlClient.dll"
Fri 20 Feb 2004 232,960 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\raac.dll"
Sun 9 Jun 2002 525,824 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rnco3260.dll"
Tue 10 Dec 2002 245,805 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rnlt3260.dll"
Tue 10 Dec 2002 45,093 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv103260.dll"
Tue 10 Dec 2002 98,341 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv203260.dll"
Tue 10 Dec 2002 94,247 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv303260.dll"
Tue 10 Dec 2002 90,151 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv403260.dll"
Tue 10 Dec 2002 102,439 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\sipr3260.dll"
Sun 9 Jun 2002 49,152 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\tokr3260.dll"
Thu 8 May 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\a5f16949630e8c407182e4928048db02\BIT2.tmp"

Finished!

a druhý:


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:19:03, on 20.8.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Common Files\602phs\pdfSaver.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\PDF\pdfSaver\pdfSaver3.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINCMD\WINCMD32.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {3AAC4C68-AFC8-11DB-80EF-8AF955D89593} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [602PC SUITE PDF Saver] "C:\Program Files\Common Files\602phs\pdfSaver.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKCU\..\Run: [SpybotSD TeaTimer] "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [pdfSaver3] "c:\Program Files\PDF\pdfSaver\pdfSaver3.exe"
O4 - Global Startup: Anti-Virus&Trojan.lnk = C:\Program Files\Anti-Virus&Trojan\Anti-Virus&Trojan.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout Free Download Managerem - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Stáhnout vybrané Free Download Managerem - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Stáhnout vše Free Download Managerem - file://C:\Program Files\Free Download Manager\dlall.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.nvidia.com/content/DriverDow ... eqlab3.cab
O16 - DPF: {22272CAC-E859-4523-B505-7ECF74469A1B} (Mdview3d Control) - http://www.veka.de/__C1257308002B1CFE.n ... view3d.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 5484954734
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O23 - Service: FLEXlm server for PTC - Unknown owner - c:\Applic\proe2002\i486_nt\obj\lmgrd.exe (file missing)
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe

--
End of file - 6920 bytes


Nápis Virus alert zmizel, je třeba ještě něco dokončit, nebo mohu považovat počítač za odvirovaný??
Díky za odpověď

Re: Virus alert!

Napsal: 21 srp 2008 07:59
od fredik
Podívej se a odinstaluj bud přes Přidat nebo odebrat program, nebo pod Start => Programy => Anti-Virus&Trojan:
Anti-Virus&Trojan
Pokud by jsi ho tam nenašel tak zkus spustit ručně jeho odinstalaci přes: C:\Program Files\Anti-Virus&Trojan\unins000.exe

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Spusť znovu HijackThis a zaškrtni v něm čtverečky před řádky:
O2 - BHO: (no name) - {3AAC4C68-AFC8-11DB-80EF-8AF955D89593} - (no file)
O4 - Global Startup: Anti-Virus&Trojan.lnk = C:\Program Files\Anti-Virus&Trojan\Anti-Virus&Trojan.exe
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
po zaškrtnutí klikni na tlačítko Fix Checked

Smaž pak jeho adresář/složku:
C:\Program Files\Anti-Virus&Trojan

Pokud jsi jako admin/správce a nenastavoval jsi nějaké restrikce v IE tak můžeš fixnout i tyto položky (něco nastavuje i SpyBot):
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present

Můžeš ještě případně fixnout programy, které se spouští zároveň se startem Win. a nejsou nutné/potřeba:
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Podívej se jestli ti pod Startem nechybí nějaké ikony, zobrazují se ti disky pod Tento počítač....
Pokud ne, tak udělej toto:

Pokud používáš souborový manažer a dokázal by jsi zkopírovat na plochu jeden soubor tak udělej toto:
běž do adresáře kde máš rozbalený SDFix a tam najdeš soubor XP_VirusAlert_Repair.inf. Zkus si ho přesunout na plochu.
- klikni pravým tlačítkem myši na soubor XP_VirusAlert_Repair a zvol možnost nainstalovat.
- po té restartuj Pc

jinak použij toto:
Stáhni si tento archiv a rozbal si jeho obsah na plochu
- klikni pravým tlačítkem myši na soubor VArestorepolicies.inf a zvol možnost nainstalovat.
- po té restartuj Pc

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Doporučil bych ti aktualizovat Javu:
- Stáhni si poslední verzi Java Runtime Environment (JRE) 6 Update 7
- Posuň se dolů kde je napsáno Java Runtime Environment (JRE) 6 Update 7 a klikni na tlačítko Download
- Načte se ti nová stránka
- Pod nadpisem Select Platform and Language for your download:
* u položky Platform: vyber OS který používáš
* zatrhni možnost kde je napsáno: I agree to the Java SE Runtime Environment 6 License Agreement
* klikni na tlačítko Continue >>
- Načte se ti nová stránka
- Klikni na odkaz pro stažení pod položkou: Windows Offline Installation
Obrázek
a ulož si ho na disk

- Ukonči běžící programy které máš spuštěné, hlavě webový prohlížeč
- Jdi přes Start -> Ovládací panely -> Přidat nebo odebrat programy a odinstaluj všechny staré verze Javy
- Podívej se po položkách s názvem Java Runtime Environment (JRE or J2SE)
* příklady starých verzí v Přidat nebo odebrat programy:
    J2SE Runtime Environment 5.0
    J2SE Runtime Environment 5.0 Update 8
    Java 2 Runtime Environment, SE v1.4.2
- Odinstaluj je přes tlačítko Změnit nebo odebrat nebo Odebrat
- Odinstaluj postupně po sobě případné všechny staré verze Javy
- Po skončení odinstalovaní restartuj Pc.
- Pak už jen spusť instalaci poslední verze ze souboru jre-6u7-windows-i586-p.exe, který sis stáhl na začátku

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Pro lepší zabezpečení bych ti doporučil doinstalovat firewall, můžeš si vybrat některý zde uvedený nebo některý jiný z odkazu: Přehled osobních firewallů
Firewally zdarma:
Kerio - přehledný, větší možnosti nastavení, náročnější na systémové prostředky, v češtině
ZoneAlarm - jednoduchý, kompatibilní, nenáročný na systémové prostředky, málo možností nastavení, v angličtině + návod
Comodo - kvalitní, pokročilý, s mnoha funkcemi, originálně v angličtině (nepoužít jeho malware scaner, nebo přes něj odstranit co najde)

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Smaž pak ručně adresář/složku, kterou vytvořil SDFix
C:\SDFix

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Můžeš případně pročisti Pc od dočasných souborů pomocí některého programu:
CCleaner případně ATF-Cleaner
Stáhni si ATF-Cleaner (by Atribune) a spusť ho
    Pod položkou Main zatrhni možnost: Select All
    Pak klikni na tlačítko: Empty Selected
Pokud používáš jako prohlížeč FireFox:
    - Zvol nahoře možnost Firefox
    - Zatrhni možnost: Select All
    - Budeš dotázán na to zda si přeješ odstranit uložené hesla z Firefoxu, podle potřeby zvol buď Ano nebo Ne
    - Pak klikni na tlačítko: Empty Selected
Pokud používáš jako prohlížeč Operu:
    - Zvol nahoře možnost Opera
    - Zatrhni možnost: Select All
    - Budeš dotázán na to zda si přeješ odstranit uložené hesla z Opery, podle potřeby zvol buď Ano nebo Ne
    - Pak klikni na tlačítko: Empty Selected
Pak můžeš program zavřít.

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Případně bych ti jako prevenci doporučil ještě tento program:
SpywareBlaster
- návod je sice sepsaný na předchozí verzi, ale kromě změny GUI je vše podstatné stejné.

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Log vypadá jinak dobře, kdyby byl nějaký problém tak dej vědět.
Nemáš za co Obrázek

Re: Virus alert!

Napsal: 21 srp 2008 21:31
od xppeettrr
Díky moc za Váš čas a za rady. Moc mi to pomohlo. Pokud bych měl nějaký problém určitě se ozvu. Ještě jednou díky!!