2009-05-27 16:46 . 2009-05-27 16:46 67 --sh--w c:\documents and settings\PC\Local Settings\Temporary Internet Files\desktop.ini
2009-05-27 17:00 . 2009-05-27 17:00 67 --sh--w c:\documents and settings\PC\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini
2009-05-27 17:00 . 2009-05-27 18:15 32768 --sha-w c:\documents and settings\PC\Local Settings\Temporary Internet Files\Content.IE5\index.dat
2009-05-27 18:16 . 2009-05-27 18:16 67 --sh--w c:\documents and settings\PC\Local Settings\Temporary Internet Files\Content.IE5\97E93YN4\desktop.ini
2009-05-27 18:16 . 2009-05-27 18:16 67 --sh--w c:\documents and settings\PC\Local Settings\Temporary Internet Files\Content.IE5\F2FO33HM\desktop.ini
2009-05-27 18:16 . 2009-05-27 18:16 67 --sh--w c:\documents and settings\PC\Local Settings\Temporary Internet Files\Content.IE5\NODODDMI\desktop.ini
2009-05-27 18:16 . 2009-05-27 18:16 67 --sh--w c:\documents and settings\PC\Local Settings\Temporary Internet Files\Content.IE5\YHCVG0DO\desktop.ini
2008-02-27 13:27 . 2008-02-27 14:13 62 --sha-w c:\documents and settings\PC\Nabídka Start\desktop.ini
2008-02-27 13:27 . 2009-03-10 18:36 231 --sha-w c:\documents and settings\PC\Nabídka Start\Programy\desktop.ini
2008-02-27 13:27 . 2009-05-01 14:15 803 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Internet Explorer.lnk
2008-02-27 13:27 . 2009-03-10 18:36 738 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Outlook Express.lnk
2008-02-27 13:27 . 2008-02-27 13:22 1599 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Vzdálená pomoc.lnk
2008-02-27 13:27 . 2008-07-23 10:51 788 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Windows Media Player.lnk
2008-12-14 14:06 . 2008-12-14 14:51 1573 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Kouzelné dárky\Hry zdarma ke stažení.lnk
2008-12-14 14:06 . 2008-12-14 14:51 766 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Kouzelné dárky\Kouzelné dárky.lnk
2008-12-14 14:06 . 2008-12-14 14:51 741 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Kouzelné dárky\Odinstalovat Kouzelné dárky.lnk
2008-12-14 14:06 . 2008-12-14 14:51 1654 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Kouzelné dárky\Plná verze!.lnk
2008-12-14 14:06 . 2008-12-14 14:51 1605 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Kouzelné dárky\Pohádky zdarma ke stažení.lnk
2008-12-14 14:06 . 2008-12-14 14:51 1598 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Kouzelné dárky\Špidla Data Processing, s.r.o..lnk
2008-09-02 10:29 . 2008-09-02 10:29 1528 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Numericon\Hry zdarma ke stažení.lnk
2008-09-02 10:29 . 2008-09-02 10:29 706 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Numericon\Numericon.lnk
2008-09-02 10:29 . 2008-09-02 10:29 527 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Numericon\Odinstalovat Numericon.lnk
2008-09-02 10:29 . 2008-09-02 10:29 1584 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Numericon\Plná verze!.lnk
2008-09-02 10:29 . 2008-09-02 10:29 1560 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Numericon\Pohádky zdarma ke stažení.lnk
2008-09-02 10:29 . 2008-09-02 10:29 1553 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Numericon\Špidla Data Processing, s.r.o..lnk
2008-02-27 13:27 . 2008-02-27 13:22 84 --sha-w c:\documents and settings\PC\Nabídka Start\Programy\Po spuštění\desktop.ini
2008-02-27 13:27 . 2009-03-10 18:36 774 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Adresář.lnk
2008-02-27 13:27 . 2009-03-10 18:36 576 --sha-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\desktop.ini
2008-02-27 13:27 . 2009-03-11 13:39 1519 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Poznámkový blok.lnk
2008-02-27 13:27 . 2008-02-27 13:22 1527 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Prohlídka systému Windows XP.lnk
2008-02-27 13:27 . 2008-02-27 13:22 386 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Průvodce ověřením kompatibility programu.lnk
2008-02-27 13:27 . 2008-08-02 14:47 1487 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Průzkumník Windows.lnk
2008-02-27 13:27 . 2008-02-27 13:22 1555 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Příkazový řádek.lnk
2008-02-27 13:27 . 2008-02-27 13:22 1519 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Synchronizovat.lnk
2008-02-27 14:50 . 2008-02-27 14:50 833 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (bez doplňků).lnk
2009-05-01 14:15 . 2009-05-01 14:15 833 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (Žádné doplňky).lnk
2008-02-27 13:27 . 2008-02-27 13:22 293 --sha-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Usnadnění\desktop.ini
2008-02-27 13:27 . 2008-02-27 13:22 1501 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Usnadnění\Klávesnice na obrazovce.lnk
2008-02-27 13:27 . 2008-02-27 13:22 1525 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Usnadnění\Lupa.lnk
2008-02-27 13:27 . 2008-02-27 13:22 1539 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Usnadnění\Správce nástrojů.lnk
2008-02-27 13:27 . 2008-02-27 13:22 84 --sha-w c:\documents and settings\PC\Nabídka Start\Programy\Příslušenství\Zábava\desktop.ini
2008-09-09 17:44 . 2008-09-09 17:44 50 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\The KMPlayer\KMPlayer Home Page.url
2008-09-09 17:44 . 2008-09-09 17:44 722 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\The KMPlayer\KMPlayer.lnk
2008-09-09 17:44 . 2008-09-09 17:44 727 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\The KMPlayer\Uninstall KMPlayer.lnk
2008-03-16 12:54 . 2008-03-16 12:54 677 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\WinRAR\Manuál konzolové verze RARu.lnk
2008-03-16 12:54 . 2008-03-16 12:54 696 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\WinRAR\Nápověda WinRARu.lnk
2008-03-16 12:54 . 2008-03-16 12:54 696 ----a-w c:\documents and settings\PC\Nabídka Start\Programy\WinRAR\WinRAR.lnk
2009-04-24 19:55 . 2009-04-25 18:35 272 ----a-w c:\documents and settings\PC\Oblíbené položky\Aerobní a silový trénink blog medicíny, výživy a sportu mujblog.atlas.cz.url
2008-10-20 19:01 . 2008-11-16 19:44 172 ----a-w c:\documents and settings\PC\Oblíbené položky\ArmyPoint.cz.url
2008-07-13 17:41 . 2008-09-04 18:35 238 ----a-w c:\documents and settings\PC\Oblíbené položky\Atletický trénink Hlavní stránka webu o atletickém tréninku.url
2008-08-27 19:07 . 2008-09-04 19:14 180 ----a-w c:\documents and settings\PC\Oblíbené položky\Breeds of Livestock - Oklahoma State University.url
2008-03-15 19:28 . 2009-05-26 19:06 236 ----a-w c:\documents and settings\PC\Oblíbené položky\Czech Dragon Boat Association.url
2008-02-27 13:27 . 2008-02-27 13:27 122 --sha-w c:\documents and settings\PC\Oblíbené položky\Desktop.ini
2008-08-27 18:26 . 2008-08-27 18:26 238 ----a-w c:\documents and settings\PC\Oblíbené položky\Discus Throw Techniques and Articles.url
2008-10-06 10:04 . 2009-01-16 20:09 218 ----a-w c:\documents and settings\PC\Oblíbené položky\Dětské boty, dětská obuv ADIDAS 031511 Rabanator K.url
2008-04-09 19:36 . 2008-10-04 18:37 449 ----a-w c:\documents and settings\PC\Oblíbené položky\fyziologická poradna.url
2008-06-04 11:05 . 2008-09-04 18:35 398 ----a-w c:\documents and settings\PC\Oblíbené položky\Gasthof und Hotel Woferlgut in Salzburg - Holiday Voucher - Unsere Partner Betriebe.url
2008-09-29 19:19 . 2008-09-29 19:19 186 ----a-w c:\documents and settings\PC\Oblíbené položky\Herzlich Willkommen - Kanu-Connection Sportartikelhandel und Sportreisen GmbH.url
2008-05-29 11:44 . 2008-06-10 18:45 452 ----a-w c:\documents and settings\PC\Oblíbené položky\http--family.salzburgerland.com-cz-winter-.url
2008-10-26 17:19 . 2008-10-26 17:19 310 ----a-w c:\documents and settings\PC\Oblíbené položky\http--sportovni-vyziva.fitness.cz-paed-dr-vladimir-kolouch-ph-d-.url
2009-01-05 11:17 . 2009-01-05 11:17 288 ----a-w c:\documents and settings\PC\Oblíbené položky\http--www.detskestranky.cz-clanek-833-zapis_do_skoly_s_nasimi_listy_urcite_zvladnete.htm.url
2009-03-20 21:35 . 2009-03-20 21:35 155 ----a-w c:\documents and settings\PC\Oblíbené položky\http--www.isbs2008.org-main-PROCEEDINGS-table%20of%20contents.pdf.url
2008-10-10 19:34 . 2009-01-20 19:48 194 ----a-w c:\documents and settings\PC\Oblíbené položky\K&K POKER - kamna Bechyně.url
2008-04-12 18:55 . 2009-04-27 19:16 150 ----a-w c:\documents and settings\PC\Oblíbené položky\Kanoe.cz.url
2008-04-27 18:41 . 2008-11-08 16:56 232 ----a-w c:\documents and settings\PC\Oblíbené položky\KayakPaddling.net - Animated Sea Kayak Paddling School & Instruction.url
2008-12-28 22:10 . 2009-01-06 19:42 220 ----a-w c:\documents and settings\PC\Oblíbené položky\Kolín 1757 - rekonstrukce historické bitvy.url
2008-04-07 18:54 . 2008-04-15 19:01 213 ----a-w c:\documents and settings\PC\Oblíbené položky\Microsoft Outlook Web Access - přihlášení.url
2008-02-27 13:27 . 2008-02-27 13:27 119 ----a-w c:\documents and settings\PC\Oblíbené položky\MSN.url
2009-02-25 19:18 . 2009-04-13 15:19 254 ----a-w c:\documents and settings\PC\Oblíbené položky\Ondrej Vojtechovsky - Domů.url
2008-04-01 19:56 . 2009-04-27 19:05 176 ----a-w c:\documents and settings\PC\Oblíbené položky\Pilsner Dragons.url
2009-04-21 12:34 . 2009-04-21 12:34 200 ----a-w c:\documents and settings\PC\Oblíbené položky\Potraviny a výživa.url
2008-02-27 13:27 . 2008-02-27 13:27 197 ----a-w c:\documents and settings\PC\Oblíbené položky\Průvodce rozhlasovými stanicemi.url
2008-09-18 10:18 . 2008-09-18 10:18 259 ----a-w c:\documents and settings\PC\Oblíbené položky\rajče.net místo pro vaše fotografie.url
2008-03-19 21:43 . 2008-06-04 09:44 188 ----a-w c:\documents and settings\PC\Oblíbené položky\Rakousko - Alpy - LETNÍ ALPY.url
2008-11-23 08:20 . 2008-11-23 08:20 371 ----a-w c:\documents and settings\PC\Oblíbené položky\Sauna a saunování budoucnosti - infrakabiny VSEPROVASDUM.cz.url
2009-03-22 13:00 . 2009-04-13 17:53 238 ----a-w c:\documents and settings\PC\Oblíbené položky\Sportvital Hlavní strana.url
2008-05-01 19:56 . 2009-03-22 12:40 198 ----a-w c:\documents and settings\PC\Oblíbené položky\Staré odrudy - Home Page - Ovocné stromy.url
2008-03-15 19:32 . 2009-05-26 19:07 233 ----a-w c:\documents and settings\PC\Oblíbené položky\STIHL Timbersports.url
2008-05-26 19:42 . 2009-04-25 19:56 174 ----a-w c:\documents and settings\PC\Oblíbené položky\Timbersports - CZ.url
2008-09-25 20:31 . 2008-09-25 20:31 156 ----a-w c:\documents and settings\PC\Oblíbené položky\Triatlet.cz - triatlon, duatlon, ironman - trenink, zavody, kalendare, fotogalerie.url
2008-05-22 10:08 . 2008-08-05 18:30 518 ----a-w c:\documents and settings\PC\Oblíbené položky\UpToTen - the fun place to learn online.url
2008-12-20 19:36 . 2008-12-28 12:29 310 ----a-w c:\documents and settings\PC\Oblíbené položky\Vstup do Internetového bankovnictví.url
2008-10-16 12:09 . 2008-11-07 18:28 1819 ----a-w c:\documents and settings\PC\Oblíbené položky\Výsledky obrázků Google pro http--www.arabelashop.cz-shop-foto436952-sm.jpg.url
2008-10-20 11:41 . 2008-10-20 20:30 1817 ----a-w c:\documents and settings\PC\Oblíbené položky\Výsledky obrázků Google pro http--www.mimishop.sk-aldaralda-shop-foto256358-sm.jpg.url
2008-10-15 10:41 . 2008-11-07 18:22 1936 ----a-w c:\documents and settings\PC\Oblíbené položky\Výsledky obrázků Google pro http--www.pokojik.cz-fotocache-bigadd-ludus-kapsare-detail-bedrunka.jpg.url
2008-04-09 19:51 . 2008-09-04 19:18 208 ----a-w c:\documents and settings\PC\Oblíbené položky\Věda a výzkum - Oddělení vodních sportů - Katedra sportů v přírodě - UK FTVS.url
2008-08-07 18:19 . 2008-09-02 18:17 148 ----a-w c:\documents and settings\PC\Oblíbené položky\XXIX. letní olympijské hry - Peking 2008.url
2008-03-14 21:06 . 2009-05-20 20:15 527 ----a-w c:\documents and settings\PC\Oblíbené položky\YouTube - Broadcast Yourself..url
2008-03-21 20:24 . 2009-04-21 19:00 334 ----a-w c:\documents and settings\PC\Oblíbené položky\ČSOB Internetbanking 24.url
2009-05-01 14:15 . 2009-05-01 14:15 84 --sha-w c:\documents and settings\PC\Oblíbené položky\links\desktop.ini
2009-05-01 14:15 . 2009-05-01 14:15 226 ----a-w c:\documents and settings\PC\Oblíbené položky\links\Galerie oblastí Web Slice.url
2009-05-01 14:17 . 2009-05-01 14:17 302 ----a-w c:\documents and settings\PC\Oblíbené položky\links\Navrhované weby.url
2008-02-27 14:50 . 2008-02-27 14:50 133 ----a-w c:\documents and settings\PC\Oblíbené položky\links\no.url
2008-02-27 13:27 . 2008-02-27 13:27 113 ----a-w c:\documents and settings\PC\Oblíbené položky\Odkazy\Hotmail.url
2008-02-27 13:27 . 2008-02-27 13:27 119 ----a-w c:\documents and settings\PC\Oblíbené položky\Odkazy\Vlastní odkazy.url
2008-02-27 13:27 . 2008-02-27 13:27 118 ----a-w c:\documents and settings\PC\Oblíbené položky\Odkazy\Windows Media.url
2008-02-27 13:27 . 2008-02-27 13:27 113 ----a-w c:\documents and settings\PC\Oblíbené položky\Odkazy\Windows.url
2008-02-27 14:50 . 2009-05-01 14:15 133 ----a-w c:\documents and settings\PC\Oblíbené položky\Weby společnosti Microsoft\Aplikace Internet Explorer na webu Microsoft.url
2008-02-27 14:50 . 2009-05-01 14:15 133 ----a-w c:\documents and settings\PC\Oblíbené položky\Weby společnosti Microsoft\Microsoft Doma.url
2008-02-27 14:50 . 2009-05-01 14:15 133 ----a-w c:\documents and settings\PC\Oblíbené položky\Weby společnosti Microsoft\Microsoft v práci.url
2008-02-27 14:50 . 2008-02-27 14:50 133 ----a-w c:\documents and settings\PC\Oblíbené položky\Weby společnosti Microsoft\Microsoft Česká Republika.url
2008-02-27 14:50 . 2008-02-27 14:50 133 ----a-w c:\documents and settings\PC\Oblíbené položky\Weby společnosti Microsoft\Systém Windows.url
2008-02-27 14:50 . 2008-02-27 14:50 133 ----a-w c:\documents and settings\PC\Oblíbené položky\Weby společnosti Microsoft\Vítá vás aplikace Internet Explorer 7.url
2008-02-27 14:50 . 2008-02-27 14:50 133 ----a-w c:\documents and settings\PC\Oblíbené položky\Weby společnosti Microsoft\Windows Marketplace.url
2009-05-01 14:15 . 2009-05-01 14:15 134 ----a-w c:\documents and settings\PC\Oblíbené položky\Weby společnosti Microsoft\Windows Store.url
2008-03-03 20:26 . 2008-03-03 20:26 75 --sh--w c:\documents and settings\PC\Okolní síť\My Web Sites on MSN\Desktop.ini
2008-03-03 20:26 . 2008-03-03 20:26 248 ----a-w c:\documents and settings\PC\Okolní síť\My Web Sites on MSN\target.lnk
2008-11-27 18:21 . 2008-11-27 18:21 1016 ----a-w c:\documents and settings\PC\Plocha\After Effects.lnk
2009-04-15 17:01 . 2009-04-15 17:01 687 ----a-w c:\documents and settings\PC\Plocha\bwin Poker.lnk
2009-02-17 18:00 . 2009-05-13 15:25 1548 ----a-w c:\documents and settings\PC\Plocha\CCleaner.lnk
2009-05-27 16:56 . 2009-05-27 16:56 3003735 ----a-r c:\documents and settings\PC\Plocha\ComboFix.exe
2008-03-21 19:56 . 2008-03-21 19:56 638 ----a-w c:\documents and settings\PC\Plocha\ComfortChip.lnk
2008-10-21 15:55 . 2008-10-21 15:55 554 ----a-w c:\documents and settings\PC\Plocha\Dokumenty.lnk
2008-03-03 17:48 . 2008-06-18 18:06 2477 ----a-w c:\documents and settings\PC\Plocha\Excel.lnk
2008-09-09 17:44 . 2008-09-09 17:44 710 ----a-w c:\documents and settings\PC\Plocha\KMPlayer.lnk
2009-03-04 12:57 . 2009-03-04 12:57 687 ----a-w c:\documents and settings\PC\Plocha\MIKROPROG Frézka.lnk
2008-11-15 08:59 . 2009-03-04 12:49 779 ----a-w c:\documents and settings\PC\Plocha\MIKROPROG Soustruh.lnk
2009-05-24 14:18 . 2009-05-24 14:18 1620 ----a-w c:\documents and settings\PC\Plocha\Mozilla Firefox.lnk
2008-03-04 18:56 . 2008-03-04 18:56 738 ----a-w c:\documents and settings\PC\Plocha\Outlook Express.lnk
2008-09-03 15:39 . 2009-05-22 11:36 2481 ----a-w c:\documents and settings\PC\Plocha\PowerPoint.lnk
2009-03-16 18:08 . 2009-03-16 18:08 587 ----a-w c:\documents and settings\PC\Plocha\QIP.lnk
2008-03-03 17:31 . 2008-03-03 17:31 757 ----a-w c:\documents and settings\PC\Plocha\Total Commander.lnk
2008-03-03 17:48 . 2009-05-26 13:43 2563 ----a-w c:\documents and settings\PC\Plocha\Word.lnk
2008-07-09 18:40 . 2008-07-09 18:40 16507 ---ha-w c:\documents and settings\PC\Plocha\Martin\ZbThumbnail.info
2009-05-01 14:16 . 2009-05-27 11:31 1589248 --sha-w c:\documents and settings\PC\PrivacIE\index.dat
2009-05-27 17:04 . 2009-05-27 17:04 561 ----a-w c:\documents and settings\PC\Recent\Add-Remove Programs.lnk
2009-05-27 18:17 . 2009-05-27 18:17 469 ----a-w c:\documents and settings\PC\Recent\CFScript.lnk
2009-05-27 17:04 . 2009-05-27 17:04 596 ----a-w c:\documents and settings\PC\Recent\ComboFix-quarantined-files.lnk
2009-05-27 16:46 . 2009-05-27 16:46 150 --sha-w c:\documents and settings\PC\Recent\Desktop.ini
2009-05-27 16:54 . 2009-05-27 16:54 631 ----a-w c:\documents and settings\PC\Recent\HijackThis (2).lnk
2009-05-27 16:54 . 2009-05-27 16:54 836 ----a-w c:\documents and settings\PC\Recent\hijackthis.lnk
2009-05-27 17:19 . 2009-05-27 17:19 605 ----a-w c:\documents and settings\PC\Recent\Kaela.lnk
2009-05-27 17:19 . 2009-05-27 17:19 843 ----a-w c:\documents and settings\PC\Recent\Kaela09.lnk
2009-05-27 17:20 . 2009-05-27 17:20 855 ----a-w c:\documents and settings\PC\Recent\margar.lnk
2009-05-27 17:20 . 2009-05-27 17:20 658 ----a-w c:\documents and settings\PC\Recent\Obrázky.lnk
2009-05-27 17:04 . 2009-05-27 17:04 371 ----a-w c:\documents and settings\PC\Recent\Qoobox.lnk
2008-02-27 13:27 . 2008-02-27 13:21 188 --sha-w c:\documents and settings\PC\SendTo\desktop.ini
2008-02-27 13:27 . 2008-02-27 13:27 0 ----a-w c:\documents and settings\PC\SendTo\Dokumenty.mydocs
2008-02-27 13:27 . 2008-02-27 13:21 0 ----a-w c:\documents and settings\PC\SendTo\Komprimovaná složka (metoda ZIP).ZFSendToTarget
2009-03-04 12:30 . 2009-03-04 12:30 834 ----a-w c:\documents and settings\PC\SendTo\MediaInfo.lnk
2008-02-27 13:27 . 2008-02-27 13:21 0 ----a-w c:\documents and settings\PC\SendTo\Plocha (vytvořit zástupce).DeskLink
2008-02-27 13:27 . 2008-02-27 13:21 0 ----a-w c:\documents and settings\PC\SendTo\Příjemce pošty.MAPIMail
2008-02-27 14:05 . 2009-05-27 10:57 32768 ----a-w c:\documents and settings\PC\UserData\index.dat
2008-07-09 19:11 . 2008-07-09 19:11 48 ----a-w c:\documents and settings\PC\UserData\270NCPCR\IsOnIE6tbPromo[1].xml
2008-03-24 20:46 . 2008-03-24 20:46 224 ----a-w c:\documents and settings\PC\UserData\270NCPCR\js-storage[1].xml
2008-03-28 21:05 . 2008-03-28 21:05 224 ----a-w c:\documents and settings\PC\UserData\270NCPCR\js-storage[2].xml
2008-12-05 19:57 . 2008-12-05 19:57 274 ----a-w c:\documents and settings\PC\UserData\270NCPCR\js-storage[3].xml
2008-07-20 18:50 . 2008-07-20 18:50 226 ----a-w c:\documents and settings\PC\UserData\270NCPCR\js-storage[4].xml
2008-10-04 18:00 . 2008-10-04 18:00 274 ----a-w c:\documents and settings\PC\UserData\270NCPCR\js-storage[5].xml
2008-10-05 11:42 . 2008-10-05 11:42 228 ----a-w c:\documents and settings\PC\UserData\270NCPCR\js-storage[6].xml
2009-04-21 19:10 . 2009-04-21 19:10 230 ----a-w c:\documents and settings\PC\UserData\270NCPCR\js-storage[7].xml
2009-05-23 18:32 . 2009-05-23 18:32 554 ----a-w c:\documents and settings\PC\UserData\270NCPCR\js-storage[9].xml
2009-05-26 19:52 . 2009-05-26 19:52 42 ----a-w c:\documents and settings\PC\UserData\270NCPCR\pmocntr[1].xml
2008-03-06 20:06 . 2008-03-06 20:06 180 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\js-storage[1].xml
2008-03-27 20:56 . 2008-03-27 20:56 180 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\js-storage[2].xml
2008-06-05 19:54 . 2008-06-05 19:54 182 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\js-storage[3].xml
2008-06-15 19:57 . 2008-06-15 19:57 180 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\js-storage[4].xml
2008-07-16 20:09 . 2008-07-16 20:09 180 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\js-storage[5].xml
2008-10-01 19:01 . 2008-10-01 19:01 274 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\js-storage[6].xml
2008-10-05 18:02 . 2008-10-05 18:02 276 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\js-storage[7].xml
2008-10-23 19:29 . 2008-10-23 19:29 230 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\js-storage[8].xml
2009-05-04 13:10 . 2009-05-04 13:10 844 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\js-storage[9].xml
2009-05-20 14:18 . 2009-05-20 14:18 28 ----a-w c:\documents and settings\PC\UserData\4N6TQR2F\oWindowsUpdate[1].xml
2009-04-30 14:12 . 2009-04-30 14:12 42 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\cpa[1].xml
2008-03-24 20:57 . 2008-03-24 20:57 322 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\js-storage[1].xml
2008-04-02 19:10 . 2008-04-02 19:10 180 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\js-storage[2].xml
2008-06-11 18:41 . 2008-06-11 18:41 180 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\js-storage[3].xml
2008-07-15 18:22 . 2008-07-15 18:22 226 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\js-storage[4].xml
2008-10-04 18:39 . 2008-10-04 18:39 230 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\js-storage[5].xml
2008-10-09 18:45 . 2008-10-09 18:45 178 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\js-storage[6].xml
2009-03-01 08:43 . 2009-03-01 08:43 230 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\js-storage[7].xml
2009-05-25 18:43 . 2009-05-25 18:43 546 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\js-storage[8].xml
2009-02-19 16:19 . 2009-02-19 16:19 28 ----a-w c:\documents and settings\PC\UserData\ABULOT4V\oWindowsUpdate[1].xml
2008-03-09 20:05 . 2008-03-09 20:05 182 ----a-w c:\documents and settings\PC\UserData\MVS14565\js-storage[1].xml
2008-06-17 19:05 . 2008-06-17 19:05 178 ----a-w c:\documents and settings\PC\UserData\MVS14565\js-storage[2].xml
2008-06-02 09:07 . 2008-06-02 09:07 180 ----a-w c:\documents and settings\PC\UserData\MVS14565\js-storage[3].xml
2009-04-08 18:35 . 2009-04-08 18:35 230 ----a-w c:\documents and settings\PC\UserData\MVS14565\js-storage[4].xml
2008-07-18 19:18 . 2008-07-18 19:18 224 ----a-w c:\documents and settings\PC\UserData\MVS14565\js-storage[5].xml
2008-10-13 18:52 . 2008-10-13 18:52 274 ----a-w c:\documents and settings\PC\UserData\MVS14565\js-storage[6].xml
2008-10-05 11:40 . 2008-10-05 11:40 230 ----a-w c:\documents and settings\PC\UserData\MVS14565\js-storage[7].xml
2008-10-23 19:29 . 2008-10-23 19:29 320 ----a-w c:\documents and settings\PC\UserData\MVS14565\js-storage[8].xml
2009-04-12 17:57 . 2009-04-12 17:57 230 ----a-w c:\documents and settings\PC\UserData\MVS14565\js-storage[9].xml
2008-02-27 13:27 . 2002-09-23 12:00 4570 ----a-w c:\documents and settings\PC\Šablony\amipro.sam
2008-02-27 13:27 . 2002-09-23 12:00 5632 ----a-w c:\documents and settings\PC\Šablony\excel.xls
2008-02-27 13:27 . 2002-09-23 12:00 1518 ----a-w c:\documents and settings\PC\Šablony\excel4.xls
2008-02-27 13:27 . 2002-09-23 12:00 2448 ----a-w c:\documents and settings\PC\Šablony\lotus.wk4
2008-02-27 13:27 . 2002-09-23 12:00 12288 ----a-w c:\documents and settings\PC\Šablony\powerpnt.ppt
2008-02-27 13:27 . 2002-09-23 12:00 461 ----a-w c:\documents and settings\PC\Šablony\presenta.shw
2008-02-27 13:27 . 2002-09-23 12:00 4017 ----a-w c:\documents and settings\PC\Šablony\quattro.wb2
2008-02-27 13:27 . 2002-09-23 12:00 58 ----a-w c:\documents and settings\PC\Šablony\sndrec.wav
2008-02-27 13:27 . 2002-09-23 12:00 4608 ----a-w c:\documents and settings\PC\Šablony\winword.doc
2008-02-27 13:27 . 2002-09-23 12:00 1769 ----a-w c:\documents and settings\PC\Šablony\winword2.doc
2008-02-27 13:27 . 2002-09-23 12:00 30 ----a-r c:\documents and settings\PC\Šablony\wordpfct.wpd
2008-02-27 13:27 . 2002-09-23 12:00 57 ----a-r c:\documents and settings\PC\Šablony\wordpfct.wpg
((((((((((((((((((((((((((((( SnapShot@2009-05-27_16.59.25 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-05-27 18:16 . 2009-05-27 18:16 16384 c:\windows\Temp\Perflib_Perfdata_5f0.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2007-04-19 484904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"avast!"="c:\progra~1\Avast\ashDisp.exe" [2009-02-05 81000]
"gemstrmw"="c:\windows\system32\gemstrmw.exe" [2003-08-29 24576]
"RTHDCPL"="RTHDCPL.EXE" - c:\windows\RTHDCPL.exe [2006-11-14 16270848]
"SkyTel"="SkyTel.EXE" - c:\windows\SkyTel.exe [2006-05-16 2879488]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\
0OODBS
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\WINDOWS\\system32\\dpnsvr.exe"=
"c:\\Program Files\\Total Commander\\TOTALCMD.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Adobe\\Adobe After Effects CS3\\Support Files\\AfterFX.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"12124:TCP"= 12124:TCP:*:Disabled:BitComet 12124 TCP
"12124:UDP"= 12124:UDP:*:Disabled:BitComet 12124 UDP
"18482:TCP"= 18482:TCP:*:Disabled:BitComet 18482 TCP
"18482:UDP"= 18482:UDP:*:Disabled:BitComet 18482 UDP
R0 csdf;cdsf;c:\windows\system32\drivers\csdf.sys [14.4.2009 17:35 39440]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [1.4.2008 15:14 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [1.4.2008 15:14 20560]
R3 GEMPC430;GEMPLUS GemPC430 USB Smart Card Reader;c:\windows\system32\drivers\grclass.sys [21.3.2008 21:59 82432]
S3 Amps2prt;A4Tech PS/2 Port Mouse Driver;c:\windows\system32\drivers\Amps2prt.sys [9.5.2006 18:27 13824]
S3 NCHSSVAD;SoundTap Recorder;c:\windows\system32\drivers\nchssvad.sys [21.9.2008 14:10 21120]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"c:\program files\Common Files\LightScribe\LSRunOnce.exe"
.
.
------- Doplňkový sken -------
.
uStart Page =
hxxp://www.idnes.cz/uInternet Settings,ProxyOverride = *.local
DPF: {1AE23F24-D3E4-4C57-8468-6618B9B8B70F} -
hxxps://ib24.csob.cz/Comp/IcaSignerCZ.cabDPF: {461A37E7-17B3-40E3-B6BB-7CAEC732C9E4} -
hxxps://ib24.csob.cz/comp/CSOBEnroll.dllDPF: {4C3CEE0B-4F2F-44C3-9586-4368F3200143} -
hxxps://s.ica.cz/icapki.cabFF - ProfilePath - c:\documents and settings\PC\Data aplikací\Mozilla\Firefox\Profiles\b5mcnbn1.default\
FF - prefs.js: browser.startup.homepage -
hxxp://www.pc-help.cz/FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npganymedenet.dll
---- NASTAVENÍ FIREFOXU ----
FF - user.js: browser.cache.memory.capacity - 16000
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - fales
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autofill - true
FF - user.js: content.max.tokenizing.time - 3000000
FF - user.js: content.maxtextrun - 4095
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 1000000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 1000000
FF - user.js: dom.disable_window_status_change - true
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.firstrequest - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: nglayout.initialpaint.delay - 1000
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-05-27 20:20
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
"OODEFRAG10.00.00.01WORKSTATION"="FB98FDB7BA8CF785D9E274B4E92661928BA388EC0247C39877DB979D424EAD69A2FC41914F366AFD36656A145E1D632D48F210732B5E6B78839B6E934131BE6614A0751016E6E76B67CB0BED6CAD66E7BE3EA1DF93E6AE2F91CB1A19EA90F522356D7B2E3DB5CDDAE9C0F605677D92E822913960D1BAA399FEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CA6A0AC4980AC7933A2D97226D213B555A6A0AC4980AC7933A6171C11EC38DE3DE1A3344B8F39F21A68308373F12AD3DBF7F38BE9D5E058E56ED97FB52E6F837895520AD80AE7EDF1776D17560A6F7C93786C7C3F2C6CEB614B7A715A62B4B28AB4E3CED67B582CE393EA260A5BF70FF0CAA0A24583AAC301E95642B86DF2F6D8B29BD9E22FCA8D6C674EE396F6B2DC2A6D35AB8CD25BBA533B324085C9DE566B977F347A4383E62DAFFD39E3BE15A519F3137E0760C5A00C47196B5DC42E4EED015B1D04A94A016ABE2740BE6C17213B8468320BCAB3B70129587A407F1BCEB09DBE86C72BE91B0EF83AC8D98A367833D726145281F1382D1184D59170E43C2733FA98F2E0B2E3A3D6E9D64AF97249C63D8024FAC9D14BB041EF9C97624DEC69192A2C933AF8015DE6B022896CD0A5DE17F1178A3DA911CC91379FFEF01CAEB43C2550A07A110D8EC9499574EBDA158A5B36D56347539DE9EC3863D58F1BC1661D8CC771B7DA92B1B5B351CCD39B8F7C14CFFAD1292C759153942391049959834EC10941DBB314E173B3A73953A484086004D90478169574D633CA08E66A9C357AED3EB2270086625F53A2C0EC0AD5A8725AF58C9D76EBE3203EFD74A663A845DB7AC5C82CA6D2176C5C7AD17BE459FC10A08762D337DC5669238FF585DE8DA5C297B3EB519455879EE021BE28D1584592E8FA5EAEC43E6882138B1219BC4FE715B7CCE8D1B760628E33393B737112E86A0870BF11125BD84E86AD2EC9DFE446CA928C703C0537F76B6E9A6132E838F01816BDA9B395F309C3376996D72D3B1CEE24A116F273953DF5EBD0AF0BDFEF0CB3716A2123C6B881EFA1627AD2903367A22A6D52ACFE254B82CB9A867A83D40A653B33124225D4EB708972EDA179A04E9A280782F428895EFAF36CAA4F8473E2EBD788C943B0DE1878F327E6FD5849181E65B9E52AF056D85D8CEC47AD974E301B708FFAB1F0E8F7D02C4341F5A4EBB0896D03A17F62153DB900F8680EF45BAF5872A03BE76EF4A452403BBC69D9B6A74E0E96BE7A07C33635009F00BBD985431D8F478616B6F8D5EE0138FD90F64EB06F5C59A7F66FD1900B7F2363D606A970783C453A445B62EB28051989F3FC4B2406ADE62FA3AE253C86B7FCCB53BF9A620D328E9949F28E6B16A8EDCD717339FEBD1F8E87835C96CE89A4D656F6CE1DE490ED4CC951965078"
"OODEFRAG11.00.00.01WORKSTATION"="44F42D268D7A43144D45BF0A9B03856DDCEAEFCDB1085BF1FBB7E808BF1906A5DEDD4B3F01AF12EF1BA873926677889541CE8F87CC236AC5375100D288537D2EEB6A0DFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CA6A0AC4980AC7933A6A0AC4980AC7933FEBC9E127BECC74CA2D97226D213B5553CEB6330261098FB987CC17BE4885417335E118C1631F8D2E8D48847EBCE9FB99D95D050AA0510D3135567D7C109B2D9472116B9721E90B9E9817CE211E85AEA5B772215C9131193C345A1707F342C7CB00459CDB1985D54CD8D37727BCFDB479E360D011C0CC4DF5B53F6D110520ABFCB95D1073E006CA0382DC07E301411A8F6C9490B5FD49991735DEF800BBED81BD5B5F893A8C18B52B3652605595BA71FD47D931B75E9C0B384149BF22C666D37F21CCD9824E44E4D2A137576C0DD176F0DF1AD1264D7AD08ECFB8B94CFCEDCF02C52552D0A7F8B2FED6342B7DAE9158E5919DA3F57C11B82EFEC54C4FB108059EAB512DD543D60C53158A52339E01EABD63D63EA99DC05CCB294905554D177B80078922AA3E029918E4B390497B7F2A287F795CD1F75AD41C074DC8EA65723859E1F6307BB3D0A4B80E59E9B50F71809503A41957DE79AF20960DB2B5FF12BEE5C85175B063B6B5CE9A5F8A0E6BD5426FB473BE56D271324DB02B259930877D6B6D7C4040C56F6E40DDEEE3AFEBBB474B5B6DBD3CE3AA4CEF0540BBC799638D00D980851009F1C3513B7AD85DFB70A258FF400E821BAA11F63AA93EC6BACDE28A11DFD86B43A0FD488AB63157988E71B80C288248CD69FF4AF277CF4E8EC21D91C8E4A5BA0DFC57F5D08C4EB5B9D25ECDFB15AF65AD075663AC4FB52148FF91888EC137D62DBFAA066718985B9F7DF67ECA95D47767EC23AC74FCBF934DD2646D508038B380F2FDEDBDC6C4CEE2BF68948E87EEEF54B67ED0466A951B4B8A9015706C89986EC258CD916AC2376621086F57C2EBC0D358832FB80D6B3A3934913C461972FD3FE63B7613B8F5E72DA114761CAE1F395CE0FE9A3679971B4758F00B966264A4E61369C57C0DCC6A6E4A765570911C60E3CA8B0D035BACC3E79CA7BB4B82E59C4422B2E026B5E1A7CE54431894439E2973B4750BD5C89FC3C4E0D7099CCEEC12C6817148FD7650981D71A2E0C5B5A64F8171E4A0920552BCBB82D7C31ECAAD91AAA1128907344B765472215D904F9DD1B332853349B75F8B08EC3702437A86E4C767278F781D341FC56984FCE4421558D852154A6B943F8D23BB0D1041DB23FA14B5C4820976FB043B97C7EAD78DA4500998BE7AABB1CB03C3E94DAC36318819F3D308D44237687D3B912F49B50399BC90C2CE16E37E19C9A2CD678B9262C5B6CF496F204DFCC3CEDB5633A21504FB865108B430513FAAB43"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(756)
c:\windows\system32\Ati2evxx.dll
.
Celkový čas: 2009-05-27 20:22
ComboFix-quarantined-files.txt 2009-05-27 18:22
ComboFix2.txt 2009-05-27 17:00
Před spuštěním: Volných bajtů: 188 505 849 856
Po spuštění: Volných bajtů: 188 486 209 536
Current=1 Default=1 Failed=0 LastKnownGood=4 Sets=1,2,3,4
21336 --- E O F --- 2009-05-13 12:42