Prosím o kontrolu HJT

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

PJD1
nováček
Příspěvky: 3
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Prosím o kontrolu HJT

Příspěvekod PJD1 » 15 zář 2009 16:54

Počitač je pomalý jako sviňa, možna mám virus anebo moc "running processes"? Jsem cizinec tady ale kamarád muže pro mě prekladát. Buď tak nebo v angličtině? :oops: Děkuji moc do predu. :huh:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:31:52, on 15.9.2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18813)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\Net4Switch\Net4Switch.exe
C:\Program Files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Internet Explorer\IELowutil.exe
C:\Downloads\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R3 - URLSearchHook: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: &Crawler lišta - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe -expressboot
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/betapit/PCPitStop.CAB
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{819190C7-52D1-447B-B037-4F88A831F510}: NameServer = 192.168.1.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\Skype4COM.dll
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Kaspersky,Lab\Kaspersky,Internet,Security,2009\mzvkbd.dll,C:\PROGRA~1\Kaspersky,Lab\Kaspersky,Internet,Security,2009\adialhk.dll,C:\PROGRA~1\Kaspersky,Lab\Kaspersky,Internet,Security,2009\kloehk.dll,avgrsstx.dll
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: Syntek AVStream USB2.0 WebCam Service (StkSSrv) - Syntek America Inc. - C:\Windows\System32\StkCSrv.exe

--
End of file - 8806 bytes

Reklama
pitimir
Level 3.5
Level 3.5
Příspěvky: 850
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod pitimir » 15 zář 2009 21:15

Hello :)
I´ll try english, OK? :lol:
HJT is very old tool and now it´s inadequate for using yet. Therefore please download DDS. Save it to your desktop. Close all your running processes and double click on the DDS icon. No input is needed, the scan is running. Notepad will open with the results, send me both logs.
Nemam rad amaterizmus...

A adresat odkazu to vie :)

PJD1
nováček
Příspěvky: 3
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod PJD1 » 15 zář 2009 22:19

Hello Pitimir, thanks for replying. I hope I have done this correctly. :D

==== Installed Programs ======================

µTorrent
Acrobat.com
Adobe AIR
Adobe Flash Player 10 Plugin
Adobe Flash Player ActiveX
Adobe Reader 9.1.3
Advanced SystemCare 3
ASUS Live Update
ASUS Splendid Video Enhancement Technology
ASUS Touch Pad Extra
Asus_Camera_ScreenSaver
ATI Catalyst Install Manager
ATK Hotkey
ATK Media
ATKOSD2
Attansic Giga Ethernet Utility
AVG 8.5
BS.Player FREE
BS_Player Toolbar
BufferChm
Catalyst Control Center Core Implementation
Catalyst Control Center Graphics Full Existing
Catalyst Control Center Graphics Full New
Catalyst Control Center Graphics Light
Catalyst Control Center Graphics Previews Vista
ccc-core-static
ccc-utility
CCleaner (remove only)
CustomerResearchQFolder
D1400
D1400_Help
DeviceManagementQFolder
Digimax Master
dj_sf_ProductContext
dj_sf_software
dj_sf_software_req
DVD Suite
eSupportQFolder
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HP Customer Participation Program 8.0
HP Deskjet 8.0 Software
HP Imaging Device Functions 8.0
HP Photosmart Essential
HP Solution Center 8.0
HP Update
HPProductAssistant
HPSSupply
Choice Guard
Java(TM) 6 Update 5
Junk Mail filter update
LifeFrame2
LightScribe 1.4.124.1
Lingea Lexicon 2002
MarketResearch
MediaShow 3.0
Microsoft .NET Framework 3.5 SP1
Microsoft Application Error Reporting
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Live Add-in 1.4
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook Connector
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Search Enhancement Pack
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Motorola SM56 Speakerphone Modem
Mozilla Firefox (3.0.5)
MSVCRT
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB941833)
MSXML 4.0 SP2 (KB954430)
NB Probe
Nero 8 Demo
Net4Switch
Playchess
Power4Gear eXtreme
PowerDirector
PowerDVD
Realtek High Definition Audio Driver
Realtek USB 2.0 Card Reader
Revo Uninstaller 1.83
Samsung USB Driver
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB969679)
Security Update for Microsoft Office Excel 2007 (KB969682)
Security Update for Microsoft Office PowerPoint 2007 (KB957789)
Security Update for Microsoft Office Publisher 2007 (KB969693)
Security Update for Microsoft Office system 2007 (KB969613)
Security Update for Microsoft Office Word 2007 (KB969604)
Skins
Skype™ 4.0
Smart Defrag 1.20
Software Informer 1.0 BETA
SolutionCenter
Spybot - Search & Destroy
Spyware Terminator
Status
Synaptics Pointing Device Driver
Toolbox
TrayApp
UltraISO Premium V9.3
UnloadSupport
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 (KB969907)
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update for Outlook 2007 Junk Email Filter (kb973514)
USB2.0 1.3M WebCam
VB Runtime
VCRedistSetup
WebReg
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Mail
Windows Live Messenger
Windows Live Movie Maker Beta
Windows Live Photo Gallery
Windows Live Sync
Windows Live Toolbar
Windows Live Upload Tool
Windows Media Player Firefox Plugin
WinFlash
WinPatrol 2009
Wireless Console 2
Xvid 1.1.3 final uninstall

==== End Of File ===========================



DDS (Ver_09-07-30.01) - NTFSx86
Run by Uzivatel at 22:13:11,43 on £t 15.09.2009
Internet Explorer: 8.0.6001.18813 BrowserJavaVersion: 1.6.0_05

============== Pseudo HJT Report ===============

uInternet Settings,ProxyOverride = local
uURLSearchHooks: BS Player Toolbar: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - c:\program files\bs_player\tbBS_P.dll
mURLSearchHooks: BS Player Toolbar: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - c:\program files\bs_player\tbBS_P.dll
BHO: 1 (0x1): {02478d38-c3f9-4efb-9b51-7695eca05670} - Yahoo! Toolbar Helper
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Skype add-on (mastermind): {22bf413b-c6d2-4d91-82a9-a0f997ba588c} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_05\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
BHO: BS Player Toolbar: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - c:\program files\bs_player\tbBS_P.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: BS Player Toolbar: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - c:\program files\bs_player\tbBS_P.dll
TB: {855F3B16-6D32-4FE6-8A56-BBB695989046} - No File
TB: {A057A204-BACC-4D26-9990-79A187E2698E} - No File
TB: {8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - No File
TB: {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [WinPatrol] c:\program files\billp studios\winpatrol\winpatrol.exe -expressboot
mRun: [SpywareTerminator] "c:\program files\spyware terminator\SpywareTerminatorShield.exe"
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_05\bin\ssv.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} - hxxp://www.pcpitstop.com/betapit/PCPitStop.CAB
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - hxxp://download.divx.com/player/DivXBrowserPlugin.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/fl ... rashim.cab
TCP: {819190C7-52D1-447B-B037-4F88A831F510} = 192.168.1.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\Skype4COM.dll
AppInit_DLLs: c:\progra~1\kaspersky,lab\kaspersky,internet,security,2009\mzvkbd.dll,c:\progra~1\kaspersky,lab\kaspersky,internet,security,2009\adialhk.dll,c:\progra~1\kaspersky,lab\kaspersky,internet,security,2009\kloehk.dll,avgrsstx.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll

================= FIREFOX ===================

FF - ProfilePath -
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}

---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.mailnews.XMLHttpRequest.channel", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.mailnews.SOAPEncoding.schemaCollection", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.default.XMLHttpRequest.channel", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("security.checkloaduri", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("bidi.characterset", 1);
c:\program files\mozilla firefox\defaults\pref\channel-prefs.js - pref("app.update.channel", "release");

============= SERVICES / DRIVERS ===============


=============== Created Last 30 ================

2009-09-14 13:06 <DIR> --d----- c:\programdata\PCPitstop
2009-09-14 13:06 <DIR> --d----- c:\progra~2\PCPitstop
2009-09-14 13:06 <DIR> --d----- c:\program files\PCPitstop
2009-09-14 12:34 <DIR> --d----- c:\users\uzivatel\appdata\roaming\WinPatrol
2009-09-14 12:33 <DIR> --d----- c:\program files\BillP Studios
2009-09-09 08:03 897,608 a------- c:\windows\system32\drivers\tcpip.sys
2009-09-09 08:02 104,960 a------- c:\windows\system32\netiohlp.dll
2009-09-09 08:02 27,136 a------- c:\windows\system32\NETSTAT.EXE
2009-09-09 08:02 19,968 a------- c:\windows\system32\ARP.EXE
2009-09-09 08:02 9,728 a------- c:\windows\system32\TCPSVCS.EXE
2009-09-09 08:02 10,240 a------- c:\windows\system32\finger.exe
2009-09-09 08:02 8,704 a------- c:\windows\system32\HOSTNAME.EXE
2009-09-09 08:02 11,264 a------- c:\windows\system32\MRINFO.EXE
2009-09-09 08:02 17,920 a------- c:\windows\system32\ROUTE.EXE
2009-09-09 08:02 17,920 a------- c:\windows\system32\netevent.dll
2009-09-09 08:00 2,501,921 a------- c:\windows\system32\wlan.tmf
2009-09-09 07:59 293,376 a------- c:\windows\system32\wlanmsm.dll
2009-09-09 07:59 127,488 a------- c:\windows\system32\L2SecHC.dll
2009-09-09 07:59 302,592 a------- c:\windows\system32\wlansec.dll
2009-09-09 07:59 513,024 a------- c:\windows\system32\wlansvc.dll
2009-09-09 07:58 2,868,224 a------- c:\windows\system32\mf.dll
2009-09-02 22:48 28,672 a------- c:\windows\system32\Apphlpdm.dll
2009-09-02 22:47 4,240,384 a------- c:\windows\system32\GameUXLegacyGDFs.dll
2009-08-31 22:25 499,712 a------- c:\windows\system32\kerberos.dll
2009-08-31 22:25 213,504 a------- c:\windows\system32\msv1_0.dll
2009-08-31 22:25 175,104 a------- c:\windows\system32\wdigest.dll
2009-08-31 22:24 1,256,448 a------- c:\windows\system32\lsasrv.dll
2009-08-31 22:24 270,848 a------- c:\windows\system32\schannel.dll
2009-08-31 22:24 439,896 a------- c:\windows\system32\drivers\ksecdd.sys
2009-08-31 22:24 9,728 a------- c:\windows\system32\lsass.exe
2009-08-31 22:24 72,704 a------- c:\windows\system32\secur32.dll
2009-08-27 00:34 2,048 a------- c:\windows\system32\tzres.dll
2009-08-25 19:41 <DIR> --d----- c:\program files\WinClamAVShield
2009-08-25 19:35 142,592 a------- c:\windows\system32\drivers\sp_rsdrv2.sys
2009-08-25 19:35 <DIR> --d----- c:\users\uzivatel\appdata\roaming\Spyware Terminator
2009-08-25 19:34 <DIR> --d----- c:\programdata\Spyware Terminator
2009-08-25 19:34 <DIR> --d----- c:\progra~2\Spyware Terminator
2009-08-25 19:34 <DIR> --d----- c:\program files\Spyware Terminator
2009-08-25 13:06 <DIR> --d----- c:\users\uzivatel\appdata\roaming\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2009-08-25 09:28 <DIR> --d----- c:\program files\VS Revo Group
2009-08-22 09:42 <DIR> --d----- c:\users\uzivatel\appdata\roaming\Software Informer
2009-08-22 09:42 <DIR> --d----- c:\program files\Software Informer
2009-08-21 12:39 <DIR> --dsh--- c:\windows\system32\%APPDATA%
2009-08-21 12:09 71,680 a------- c:\windows\system32\atl.dll
2009-08-21 12:09 160,256 a------- c:\windows\system32\wkssvc.dll
2009-08-21 12:08 2,066,432 a------- c:\windows\system32\mstscax.dll
2009-08-21 12:08 91,136 a------- c:\windows\system32\avifil32.dll
2009-08-21 12:06 313,344 a------- c:\windows\system32\wmpdxm.dll
2009-08-21 12:06 7,680 a------- c:\windows\system32\spwmp.dll
2009-08-21 12:06 4,096 a------- c:\windows\system32\msdxm.ocx
2009-08-21 12:06 4,096 a------- c:\windows\system32\dxmasf.dll
2009-08-21 12:05 8,147,456 a------- c:\windows\system32\wmploc.DLL
2009-08-21 12:05 43,520 a------- c:\windows\system32\msdxm.tlb
2009-08-21 12:05 18,432 a------- c:\windows\system32\amcompat.tlb

==================== Find3M ====================

2009-09-15 16:27 45,056 a------- c:\windows\system32\acovcnt.exe
2009-09-15 11:47 86,016 a------- c:\windows\inf\infstor.dat
2009-09-15 11:47 51,200 a------- c:\windows\inf\infpub.dat
2009-09-15 11:47 143,360 a------- c:\windows\inf\infstrng.dat
2009-08-29 08:26 335,240 a------- c:\windows\system32\drivers\avgldx86.sys
2009-08-29 08:26 11,952 a------- c:\windows\system32\avgrsstx.dll
2009-08-28 14:39 173,056 a------- c:\windows\apppatch\AcXtrnal.dll
2009-08-28 14:38 2,153,984 a------- c:\windows\apppatch\AcGenral.dll
2009-08-28 14:38 541,696 a------- c:\windows\apppatch\AcLayers.dll
2009-08-28 14:38 459,776 a------- c:\windows\apppatch\AcSpecfc.dll
2009-07-21 23:52 915,456 a------- c:\windows\system32\wininet.dll
2009-07-21 23:47 109,056 a------- c:\windows\system32\iesysprep.dll
2009-07-21 23:47 71,680 a------- c:\windows\system32\iesetup.dll
2009-07-21 22:13 133,632 a------- c:\windows\system32\ieUnatt.exe
2009-03-07 18:14 56 a---h--- c:\programdata\ezsidmv.dat
2009-03-07 18:14 56 a---h--- c:\progra~2\ezsidmv.dat
2008-12-21 21:38 87,608 a------- c:\users\uzivatel\appdata\roaming\inst.exe
2008-12-21 21:38 47,360 a------- c:\users\uzivatel\appdata\roaming\pcouffin.sys
2008-07-04 15:03 665,600 a------- c:\windows\inf\drvindex.dat
2008-04-21 21:09 174 a--sh--- c:\program files\desktop.ini
2008-04-18 21:52 56,088 a------- c:\users\uzivatel\appdata\roaming\GDIPFONTCACHEV1.DAT
2007-12-25 13:18 32 a------- c:\programdata\ezsid.dat
2007-12-25 13:18 32 a------- c:\progra~2\ezsid.dat
2007-10-24 16:25 574 a------- c:\program files\changeLog.txt
2007-03-14 10:01 8,282,187 a------- c:\program files\vlc-0.8.5-win32.exe
2006-11-02 14:39 287,440 a------- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 14:39 287,440 a------- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 14:39 30,674 a------- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 14:39 30,674 a------- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 11:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 11:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 11:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 11:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat
2009-06-15 14:36 16,384 a--sh--- c:\windows\serviceprofiles\localservice\appdata\local\microsoft\windows\history\history.ie5\index.dat
2009-06-15 14:36 32,768 a--sh--- c:\windows\serviceprofiles\localservice\appdata\local\microsoft\windows\temporary internet files\content.ie5\index.dat
2009-06-15 14:36 16,384 a--sh--- c:\windows\serviceprofiles\localservice\appdata\roaming\microsoft\windows\cookies\index.dat

============= FINISH: 22:15:40,78 ===============

pitimir
Level 3.5
Level 3.5
Příspěvky: 850
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod pitimir » 16 zář 2009 17:17

Yes, everything´s all right. Next step:

Download and run ComboFix, here is guide :)
Nemam rad amaterizmus...

A adresat odkazu to vie :)

PJD1
nováček
Příspěvky: 3
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod PJD1 » 18 zář 2009 11:48

Hello again, pitimir. After I downloaded Combofix I had an internet failure. Už funguje ale nevím jestli ten CombiFix bude fungovat. Nemáte jiny link? P.

pitimir
Level 3.5
Level 3.5
Příspěvky: 850
Registrován: srpen 09
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu HJT

Příspěvekod pitimir » 18 zář 2009 17:14

Here U R:
-bleepingcomputer.com
-forospyware.com
-geekstogo.com
-techsupportforum.com

However, there is possibility malware is blocking your ComboFix. Therefore it´s important to save ComboFix to your desktop as Combo-Fix.exe (rename it :) ).
Nemam rad amaterizmus...

A adresat odkazu to vie :)


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 8 hostů