Prosím o kontrolu logu ComboFix
Napsal: 05 črc 2010 21:00
Pc se i vytěžuje na 100% tak prosím o kontrolu.
ComboFix 10-07-04.02 - Korman 05.07.2010 20:42:28.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1033.18.3326.2219 [GMT 2:00]
Spuštěný z: e:\users\Korman\Downloads\ComboFix.exe
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
E:\Install.exe
e:\users\Korman\AppData\Roaming\Microsoft\Windows\Recent\Desktop (1).ini
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-06-05 do 2010-07-05 )))))))))))))))))))))))))))))))
.
2010-07-05 18:52 . 2010-07-05 18:53 -------- d-----w- e:\users\Korman\AppData\Local\temp
2010-07-05 18:52 . 2010-07-05 18:52 -------- d-----w- e:\users\Default\AppData\Local\temp
2010-07-05 18:52 . 2010-07-05 18:52 -------- d-----w- e:\users\Administrator\AppData\Local\temp
2010-07-05 16:20 . 2010-06-14 13:58 21320 ----a-w- e:\windows\system32\authuitu.dll
2010-07-05 16:20 . 2010-06-14 13:58 30024 ----a-w- e:\windows\system32\uxtuneup.dll
2010-07-05 11:19 . 2010-07-05 18:33 -------- d-----w- e:\program files\Spyware Doctor
2010-07-05 11:19 . 2010-07-05 18:33 -------- d-----w- e:\program files\Common Files\PC Tools
2010-07-05 10:12 . 2010-07-05 10:12 -------- d-----w- e:\users\Korman\AppData\Roaming\Malwarebytes
2010-07-05 10:11 . 2010-07-05 10:11 -------- d-----w- e:\programdata\Malwarebytes
2010-07-05 10:11 . 2010-07-05 18:33 -------- d-----w- e:\program files\Malwarebytes' Anti-Malware
2010-07-05 09:23 . 2010-07-05 09:23 388096 ----a-r- e:\users\Korman\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-07-05 09:23 . 2010-07-05 09:23 -------- d-----w- e:\program files\Trend Micro
2010-07-02 19:12 . 2010-07-02 19:12 -------- d-----w- e:\users\Korman\AppData\Roaming\ATI
2010-07-02 19:12 . 2010-07-02 19:12 -------- d-----w- e:\users\Korman\AppData\Local\ATI
2010-07-02 19:12 . 2010-07-02 19:12 -------- d-----w- e:\programdata\ATI
2010-07-02 19:11 . 2010-07-02 19:11 -------- d-----w- e:\program files\Common Files\ATI Technologies
2010-07-02 19:09 . 2010-07-02 19:09 -------- d-----w- e:\program files\ATI
2010-07-02 19:08 . 2010-07-02 19:11 -------- d-----w- e:\program files\ATI Technologies
2010-07-02 19:08 . 2010-07-02 19:08 -------- d-----w- E:\ATI
2010-07-02 09:50 . 2010-07-02 09:50 -------- d-----w- e:\windows\system32\RTCOM
2010-07-01 20:36 . 2010-07-01 20:36 798771 ----a-w- e:\programdata\Microsoft\Microsoft Antimalware\LocalCopy\{F1ABA6F6-ED2E-C0C0-B8CC-90C584792B16}-WebIE.dll
2010-07-01 20:36 . 2010-07-01 20:36 325120 ----a-w- e:\programdata\Microsoft\Microsoft Antimalware\LocalCopy\{8B5DDDEF-8AEC-B861-87D8-119E484C023D}-iPhoneNSE.dll
2010-07-01 20:36 . 2010-07-01 20:36 163840 ----a-w- e:\programdata\Microsoft\Microsoft Antimalware\LocalCopy\{35342421-D409-1A7D-CCC0-815D0331BC27}-PWRISOSH.DLL
2010-07-01 20:36 . 2010-07-01 20:36 141824 ----a-w- e:\programdata\Microsoft\Microsoft Antimalware\LocalCopy\{E2DAA357-6D86-204A-92D6-6BDDD72B1F48}-rarext.dll
2010-07-01 07:09 . 2010-07-01 07:10 -------- d-----w- e:\users\Korman\AppData\Local\Google
2010-07-01 07:09 . 2010-07-01 07:09 -------- d-----w- e:\program files\Google
2010-06-30 13:51 . 2010-07-02 19:17 137464 ----a-w- e:\windows\system32\drivers\PnkBstrK.sys
2010-06-30 13:51 . 2010-06-30 13:51 139152 ----a-w- e:\users\Korman\AppData\Roaming\PnkBstrK.sys
2010-06-30 13:51 . 2010-07-02 19:16 214520 ----a-w- e:\windows\system32\PnkBstrB.exe
2010-06-30 13:50 . 2010-06-30 13:51 75064 ----a-w- e:\windows\system32\PnkBstrA.exe
2010-06-30 13:50 . 2010-06-30 13:50 794408 ----a-w- e:\windows\system32\pbsvc.exe
2010-06-29 19:16 . 2010-06-29 19:16 -------- d-----w- e:\users\Korman\AppData\Local\PunkBuster
2010-06-29 19:04 . 2010-07-02 21:54 -------- d-----w- e:\users\Korman\AppData\Roaming\HLSW
2010-06-29 19:04 . 2010-06-29 19:04 -------- d-s---w- e:\program files\HLSW
2010-06-29 18:29 . 2010-06-30 10:43 -------- d-----w- e:\program files\Activision
2010-06-29 18:28 . 2010-06-29 18:28 -------- d-sh--w- e:\windows\ftpcache
2010-06-29 18:13 . 2010-06-29 18:13 -------- d-----w- e:\program files\PowerISO
2010-06-27 16:57 . 2010-06-27 16:57 -------- d-----w- e:\users\Korman\AppData\Roaming\Ubisoft
2010-06-27 16:57 . 2010-06-27 16:57 -------- d-----w- e:\programdata\Ubisoft
2010-06-27 16:17 . 2005-05-26 13:34 2297552 ----a-w- e:\windows\system32\d3dx9_26.dll
2010-06-27 16:09 . 2010-06-29 19:23 -------- d-----w- e:\program files\Ubisoft
2010-06-27 16:09 . 2010-07-02 09:49 -------- d--h--w- e:\program files\InstallShield Installation Information
2010-06-27 12:19 . 2009-11-11 16:21 159800 ----a-w- e:\users\Korman\AppData\Roaming\Mozilla\Firefox\Profiles\7rg0wv8r.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF.dll
2010-06-27 12:19 . 2009-11-11 16:13 163898 ----a-w- e:\users\Korman\AppData\Roaming\Mozilla\Firefox\Profiles\7rg0wv8r.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
2010-06-27 08:01 . 2010-06-27 08:01 -------- d-----w- e:\program files\PC translator
2010-06-27 07:59 . 2010-06-27 07:59 798771 ----a-w- e:\programdata\LangSoft\WebIE.dll
2010-06-27 07:59 . 2010-06-27 07:59 356352 ----a-w- e:\programdata\LangSoft\TrnOutl.dll
2010-06-27 07:59 . 2010-06-27 07:59 299008 ----a-w- e:\programdata\LangSoft\TrnWord.dll
2010-06-27 07:58 . 2010-06-27 07:59 -------- d-----w- e:\programdata\LangSoft
2010-06-27 07:57 . 2010-06-28 19:46 -------- d-----w- e:\users\Korman\AppData\Roaming\LangSoft
2010-06-25 17:15 . 2007-10-23 07:27 110592 ----a-w- e:\users\Korman\AppData\Roaming\U3\temp\cleanup.exe
2010-06-25 17:14 . 2008-05-02 08:41 3493888 ---ha-w- e:\users\Korman\AppData\Roaming\U3\temp\Launchpad Removal.exe
2010-06-25 17:14 . 2010-07-01 20:08 -------- d-----w- e:\users\Korman\AppData\Roaming\U3
2010-06-25 04:27 . 2009-11-25 10:47 99176 ----a-w- e:\windows\system32\PresentationHostProxy.dll
2010-06-25 04:27 . 2009-11-25 10:47 49472 ----a-w- e:\windows\system32\netfxperf.dll
2010-06-25 04:27 . 2009-11-25 10:47 297808 ----a-w- e:\windows\system32\mscoree.dll
2010-06-25 04:27 . 2009-11-25 10:47 295264 ----a-w- e:\windows\system32\PresentationHost.exe
2010-06-25 04:27 . 2009-11-25 10:47 1130824 ----a-w- e:\windows\system32\dfshim.dll
2010-06-24 18:38 . 2010-03-24 06:37 1286456 ----a-w- e:\windows\system32\ntdll.dll
2010-06-24 18:38 . 2010-05-09 09:14 641536 ----a-w- e:\windows\system32\CPFilters.dll
2010-06-24 18:38 . 2010-05-09 09:14 417792 ----a-w- e:\windows\system32\msdri.dll
2010-06-21 04:39 . 2010-06-21 04:39 -------- d-----w- e:\program files\iPod
2010-06-21 04:39 . 2010-06-21 04:39 -------- d-----w- e:\program files\iTunes
2010-06-21 04:37 . 2010-06-21 04:37 -------- d-----w- e:\program files\Bonjour
2010-06-21 04:35 . 2010-06-21 04:35 72504 ----a-w- e:\programdata\Apple Computer\Installer Cache\iTunes 9.2.0.61\SetupAdmin.exe
2010-06-14 15:09 . 2010-07-02 08:00 -------- d-----w- e:\users\Korman\AppData\Local\Diagnostics
2010-06-13 12:55 . 2010-06-13 12:55 -------- d-----w- e:\programdata\regid.1986-12.com.adobe
2010-06-13 12:45 . 2010-06-13 12:45 -------- d-----w- e:\program files\Adobe Media Player
2010-06-13 12:44 . 2010-06-13 12:43 38784 ----a-w- e:\users\Default\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2010-06-13 12:44 . 2010-06-13 12:44 -------- d-----w- e:\program files\Common Files\Adobe AIR
2010-06-12 18:00 . 2010-06-12 08:16 -------- d-----w- e:\windows\Panther
2010-06-12 17:52 . 2010-06-12 10:53 -------- d-----w- E:\Windows.old
2010-06-12 17:03 . 2010-06-12 17:03 0 ----a-w- e:\windows\ativpsrm.bin
2010-06-12 15:33 . 2010-06-12 15:33 -------- d-----w- e:\program files\Microsoft CAPICOM 2.1.0.2
2010-06-12 15:27 . 2010-06-12 15:27 -------- d-----w- e:\users\Default\AppData\Local\Microsoft Help
2010-06-12 14:54 . 2008-11-10 09:41 32656 ----a-w- e:\windows\system32\msonpmon.dll
2010-06-12 14:54 . 2006-10-26 17:56 33104 ----a-w- e:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2010-06-12 14:52 . 2010-06-12 15:30 -------- d-----w- e:\program files\Microsoft Works
2010-06-12 14:49 . 2010-06-12 14:49 -------- d-----w- e:\windows\PCHEALTH
2010-06-12 14:49 . 2010-06-25 04:28 -------- d-----w- e:\program files\Microsoft.NET
2010-06-12 14:47 . 2010-06-12 14:47 -------- d-----w- e:\program files\Microsoft Visual Studio 8
2010-06-12 14:46 . 2010-06-12 14:46 -------- d-----w- e:\users\Korman\AppData\Local\Microsoft Help
2010-06-12 14:46 . 2010-06-13 19:27 -------- d-----w- e:\programdata\Microsoft Help
2010-06-12 14:38 . 2010-06-13 12:58 -------- d-----w- e:\users\Korman\AppData\Local\Adobe
2010-06-12 11:45 . 2010-06-12 11:45 -------- d-----w- e:\program files\Lavalys
2010-06-12 11:19 . 2010-07-05 18:41 631076 ----a-w- e:\windows\system32\perfh005.dat
2010-06-12 11:19 . 2010-07-05 18:41 121716 ----a-w- e:\windows\system32\perfc005.dat
2010-06-12 11:19 . 2010-06-12 10:27 36232 ----a-w- e:\windows\system32\perfd005.dat
2010-06-12 11:19 . 2010-06-12 10:27 292004 ----a-w- e:\windows\system32\perfi005.dat
2010-06-12 11:06 . 2010-06-12 11:06 -------- d-----w- e:\windows\cs-CZ
2010-06-12 11:06 . 2010-06-12 11:06 -------- d-----w- e:\windows\system32\cs
2010-06-12 11:05 . 2010-06-12 11:05 -------- d-----w- e:\windows\system32\XPSViewer
2010-06-12 11:05 . 2010-06-12 11:05 -------- d-----w- e:\windows\system32\drivers\cs-CZ
2010-06-12 11:05 . 2010-06-12 11:05 -------- d-----w- e:\windows\system32\Spool\prtprocs\w32x86\cs-CZ
2010-06-12 11:05 . 2010-06-12 11:05 -------- d-----w- e:\windows\system32\wbem\cs-CZ
2010-06-12 10:54 . 2010-06-12 10:55 -------- d-----w- e:\programdata\ScanSoft
2010-06-12 10:52 . 2010-07-02 09:49 -------- d-----w- e:\program files\Common Files\InstallShield
2010-06-12 10:51 . 2010-06-12 10:51 -------- d-----w- e:\program files\Common Files\CANON
2010-06-12 10:50 . 2010-06-12 10:50 -------- d--h--w- e:\programdata\CanonBJ
2010-06-12 10:50 . 2007-03-18 20:00 69632 ----a-w- e:\windows\system32\Spool\prtprocs\w32x86\CNMPP8S.DLL
2010-06-12 10:50 . 2007-03-18 20:00 27136 ----a-w- e:\windows\system32\Spool\prtprocs\w32x86\CNMPD8S.DLL
2010-06-12 10:49 . 2010-06-12 10:49 -------- d--h--w- e:\windows\system32\CanonIJ Uninstaller Information
2010-06-12 10:49 . 2007-03-18 20:00 215040 ----a-w- e:\windows\system32\CNMLM8S.DLL
2010-06-12 10:48 . 2007-03-15 05:12 188416 ----a-w- e:\windows\system32\CNC210O.DLL
2010-06-12 10:48 . 2007-03-23 07:30 1400832 ----a-w- e:\windows\system32\CNC210C.DLL
2010-06-12 10:48 . 2007-03-23 07:29 98304 ----a-w- e:\windows\system32\CNC210I.DLL
2010-06-12 10:48 . 2007-03-19 01:16 200704 ----a-w- e:\windows\system32\CNC210L.DLL
2010-06-12 10:48 . 2010-06-12 10:48 -------- d--h--w- e:\program files\CanonBJ
2010-06-12 10:47 . 2010-06-12 11:01 -------- d-----w- e:\program files\Canon
2010-06-12 10:42 . 2010-04-28 05:44 54632 ----a-w- e:\windows\system32\drivers\fssfltr.sys
2010-06-12 10:42 . 2010-06-12 10:42 -------- d-----w- e:\program files\Microsoft Sync Framework
2010-06-12 10:41 . 2006-11-29 11:06 3426072 ----a-w- e:\windows\system32\d3dx9_32.dll
2010-06-12 10:41 . 2010-06-12 10:41 -------- d-----w- e:\program files\Microsoft SQL Server Compact Edition
2010-06-12 10:41 . 2010-06-12 10:41 -------- d-----w- e:\programdata\SlySoft
2010-06-12 10:41 . 2010-06-12 10:41 -------- d-----w- e:\program files\Microsoft
2010-06-12 10:40 . 2010-06-12 10:40 -------- d-----w- e:\program files\SlySoft
2010-06-12 10:40 . 2010-06-12 10:40 -------- d-----w- e:\program files\Windows Live SkyDrive
2010-06-12 10:40 . 2010-06-12 10:42 -------- d-----w- e:\program files\Windows Live
2010-06-12 10:39 . 2010-06-12 10:39 -------- d-----w- e:\programdata\Elaborate Bytes
2010-06-12 10:39 . 2010-06-12 10:39 -------- d-----w- e:\program files\Elaborate Bytes
2010-06-12 10:29 . 2010-06-12 10:29 -------- d-----w- e:\program files\Common Files\Windows Live
2010-06-12 10:28 . 2010-06-12 10:28 -------- d-----w- e:\program files\Microsoft Silverlight
2010-06-12 10:20 . 2009-10-10 02:57 12800 ----a-w- e:\windows\system32\drivers\sffp_sd.sys
2010-06-12 10:19 . 2010-06-12 10:19 -------- d-----w- e:\windows\system32\Wat
2010-06-12 10:14 . 2010-06-12 10:14 -------- d-----w- e:\users\Korman\AppData\Roaming\Ashampoo
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-02 09:49 . 2010-07-02 09:49 319456 ----a-w- e:\windows\DIFxAPI.dll
2010-07-02 09:49 . 2010-07-02 09:49 -------- d-----w- e:\program files\Realtek
2010-07-02 09:49 . 2010-07-02 09:49 315392 ----a-w- e:\windows\HideWin.exe
2010-06-17 14:54 . 2010-06-17 14:54 0 ---ha-w- e:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2010-06-13 18:41 . 2010-06-13 18:41 0 ---ha-w- e:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2010-06-12 14:51 . 2009-07-14 04:52 -------- d-----w- e:\program files\MSBuild
2010-06-12 11:06 . 2009-07-14 04:52 -------- d-----w- e:\program files\Windows Sidebar
2010-06-12 11:06 . 2009-07-14 02:37 -------- d-----w- e:\program files\Windows Mail
2010-06-12 11:06 . 2009-07-14 04:52 -------- d-----w- e:\program files\DVD Maker
2010-06-12 11:06 . 2009-07-14 07:50 -------- d-----w- e:\program files\Windows Journal
2010-06-12 11:06 . 2009-07-14 04:52 -------- d-----w- e:\program files\Windows Photo Viewer
2010-06-12 11:06 . 2009-07-14 04:52 -------- d-----w- e:\program files\Windows Defender
2010-06-12 11:01 . 2010-06-12 11:01 -------- d-----w- e:\programdata\CanonIJPLM
2010-06-12 10:27 . 2010-06-12 11:06 36232 ----a-w- e:\windows\inf\PERFLIB\0405\perfd.dat
2010-06-12 10:27 . 2010-06-12 11:06 36232 ----a-w- e:\windows\inf\PERFLIB\0405\perfc.dat
2010-06-12 10:27 . 2010-06-12 11:06 292004 ----a-w- e:\windows\inf\PERFLIB\0405\perfi.dat
2010-06-12 10:27 . 2010-06-12 11:06 292004 ----a-w- e:\windows\inf\PERFLIB\0405\perfh.dat
2010-06-12 09:50 . 2010-06-12 09:50 -------- d-----w- e:\programdata\Data aplikací
2010-06-12 09:35 . 2010-06-12 09:35 56 ---ha-w- e:\programdata\ezsidmv.dat
2010-06-12 08:27 . 2010-05-22 08:59 -------- d-----w- e:\users\Korman\AppData\Roaming\Xilisoft Corporation
2010-06-03 02:41 . 2010-06-03 02:41 3600384 ----a-w- e:\windows\system32\GPhotos.scr
2010-05-27 17:38 . 2010-05-27 17:38 5586432 ----a-w- e:\windows\system32\drivers\atikmdag.sys
2010-05-27 17:05 . 2010-05-27 17:05 15180800 ----a-w- e:\windows\system32\atioglxx.dll
2010-05-27 17:02 . 2010-05-27 17:02 143360 ----a-w- e:\windows\system32\atiapfxx.exe
2010-05-27 17:02 . 2010-05-27 17:02 511488 ----a-w- e:\windows\system32\aticfx32.dll
2010-05-27 17:00 . 2010-05-27 17:00 446464 ----a-w- e:\windows\system32\ATIDEMGX.dll
2010-05-27 16:59 . 2010-05-27 16:59 376832 ----a-w- e:\windows\system32\atieclxx.exe
2010-05-27 16:59 . 2010-05-27 16:59 176128 ----a-w- e:\windows\system32\atiesrxx.exe
2010-05-27 16:58 . 2010-05-27 16:58 159744 ----a-w- e:\windows\system32\atitmmxx.dll
2010-05-27 16:58 . 2010-05-27 16:58 356352 ----a-w- e:\windows\system32\atipdlxx.dll
2010-05-27 16:58 . 2010-05-27 16:58 278528 ----a-w- e:\windows\system32\Oemdspif.dll
2010-05-27 16:58 . 2010-05-27 16:58 11776 ----a-w- e:\windows\system32\atimuixx.dll
2010-05-27 16:57 . 2010-05-27 16:57 43520 ----a-w- e:\windows\system32\ati2edxx.dll
2010-05-27 16:54 . 2009-07-13 22:09 3668480 ----a-w- e:\windows\system32\atidxx32.dll
2010-05-27 16:41 . 2010-05-27 16:41 53248 ----a-w- e:\windows\system32\aticalrt.dll
2010-05-27 16:41 . 2010-05-27 16:41 53248 ----a-w- e:\windows\system32\aticalcl.dll
2010-05-27 16:39 . 2010-05-27 16:39 4096000 ----a-w- e:\windows\system32\aticaldd.dll
2010-05-27 16:37 . 2010-05-27 16:37 3798528 ----a-w- e:\windows\system32\atiumdag.dll
2010-05-27 16:35 . 2010-05-27 16:35 50176 ----a-w- e:\windows\system32\coinst.dll
2010-05-27 16:31 . 2010-05-27 16:31 3025408 ----a-w- e:\windows\system32\atiumdva.dll
2010-05-27 16:25 . 2010-05-27 16:25 237568 ----a-w- e:\windows\system32\atiadlxx.dll
2010-05-27 16:25 . 2010-05-27 16:25 12800 ----a-w- e:\windows\system32\atiglpxx.dll
2010-05-27 16:25 . 2010-05-27 16:25 16896 ----a-w- e:\windows\system32\atigktxx.dll
2010-05-27 16:25 . 2010-05-27 16:25 209920 ----a-w- e:\windows\system32\drivers\atikmpag.sys
2010-05-27 16:24 . 2010-05-27 16:24 30208 ----a-w- e:\windows\system32\atiuxpag.dll
2010-05-27 16:24 . 2010-05-27 16:24 22528 ----a-w- e:\windows\system32\atiu9pag.dll
2010-05-27 16:24 . 2010-05-27 16:24 53248 ----a-w- e:\windows\system32\drivers\ati2erec.dll
2010-05-27 16:20 . 2010-05-27 16:20 52736 ----a-w- e:\windows\system32\atimpc32.dll
2010-05-27 16:20 . 2010-05-27 16:20 52736 ----a-w- e:\windows\system32\amdpcom32.dll
2010-05-27 07:24 . 2010-06-12 08:25 34304 ----a-w- e:\windows\system32\atmlib.dll
2010-05-27 03:49 . 2010-06-12 08:25 293888 ----a-w- e:\windows\system32\atmfd.dll
2010-05-21 05:18 . 2010-06-12 08:25 977920 ----a-w- e:\windows\system32\wininet.dll
2010-05-18 14:35 . 2010-05-18 14:35 91424 ----a-w- e:\windows\system32\dnssd.dll
2010-05-18 14:35 . 2010-05-18 14:35 107808 ----a-w- e:\windows\system32\dns-sd.exe
2010-05-01 14:49 . 2010-06-12 08:25 2326528 ----a-w- e:\windows\system32\win32k.sys
2010-04-29 15:37 . 2010-04-29 15:37 2137 ----a-w- e:\windows\system32\atipblag.dat
2010-04-23 07:13 . 2010-06-12 08:25 2048 ----a-w- e:\windows\system32\tzres.dll
2010-04-19 18:47 . 2010-04-19 18:47 3062048 ----a-w- e:\windows\system32\usbaaplrc.dll
2010-04-19 18:47 . 2010-04-19 18:47 41984 ----a-w- e:\windows\system32\drivers\usbaapl.sys
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- e:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- e:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2010-02-04 14:50 1197448 ----a-w- e:\program files\Ask.com\GenericAskToolbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "e:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="e:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
"Skype"="e:\program files\Skype\Phone\Skype.exe" [2010-05-13 26192168]
"uTorrent"="e:\program files\uTorrent\uTorrent.exe" [2010-06-12 322352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Monitor"="e:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]
"QuickTime Task"="e:\program files\QuickTime\QTTask.exe" [2010-03-17 421888]
"MSSE"="e:\program files\Microsoft Security Essentials\msseces.exe" [2010-06-01 1093208]
"CloneCDTray"="e:\program files\SlySoft\CloneCD\CloneCDTray.exe" [2009-01-29 57344]
"CanonSolutionMenu"="e:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696]
"CanonMyPrinter"="e:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-04-03 1603152]
"GrooveMonitor"="e:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"AdobeAAMUpdater-1.0"="e:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"SwitchBoard"="e:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS5ServiceManager"="e:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" [2010-02-22 406992]
"PWRISOVM.EXE"="e:\program files\PowerISO\PWRISOVM.EXE" [2009-11-09 180224]
"RtHDVCpl"="RtHDVCpl.exe" [2008-07-03 6266880]
"Skytel"="Skytel.exe" [2008-06-25 1826816]
"StartCCC"="e:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-05-27 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Steam"="e:\program files\Steam\Steam.exe" -silent
"QIP Internet Guardian"=e:\users\Korman\AppData\Roaming\QipGuard\QipGuard.exe
"BrowserChoice"="e:\windows\System32\browserchoice.exe" /run
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Adobe Reader Speed Launcher"="e:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
"Adobe ARM"="e:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"iTunesHelper"="e:\program files\iTunes\iTunesHelper.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
"ISTray"="e:\program files\Spyware Doctor\pctsTray.exe"
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;e:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3 EverestDriver;Lavalys EVEREST Kernel Driver;e:\program files\Lavalys\EVEREST Corporate Edition\kerneld.wnt [2010-03-30 27760]
R3 SwitchBoard;SwitchBoard;e:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 WatAdminSvc;Služba Technologie aktivace Windows;e:\windows\system32\Wat\WatAdminSvc.exe [2010-06-12 1343400]
S2 AMD External Events Utility;AMD External Events Utility;e:\windows\system32\atiesrxx.exe [2010-05-27 176128]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;e:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [2010-06-14 1051976]
S3 amdkmdag;amdkmdag;e:\windows\system32\DRIVERS\atikmdag.sys [2010-05-27 5586432]
S3 amdkmdap;amdkmdap;e:\windows\system32\DRIVERS\atikmpag.sys [2010-05-27 209920]
S3 MpNWMon;Microsoft Malware Protection Network Driver;e:\windows\system32\DRIVERS\MpNWMon.sys [2010-03-25 42368]
S3 PAC207;SoC PC-Camera;e:\windows\system32\DRIVERS\PFC027.SYS [2006-12-05 507136]
S3 RTL8167;Realtek 8167 NT Driver;e:\windows\system32\DRIVERS\Rt86win7.sys [2009-11-05 230912]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;e:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [2010-02-25 10064]
S4 MBAMProtector;MBAMProtector;e:\windows\system32\drivers\mbam.sys [x]
S4 MBAMService;MBAMService;e:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2010-04-29 304464]
S4 PCTCore;PCTools KDS;e:\windows\system32\drivers\PCTCore.sys [x]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
.
------- Doplňkový sken -------
.
uInternet Settings,ProxyOverride = *.local
IE: Add to Google Photos Screensa&ver - e:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - e:\progra~1\MIF5BA~1\Office12\EXCEL.EXE/3000
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - e:\programdata\LangSoft\WebIE.dll
IE: {{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - e:\program files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - e:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - e:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - e:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - e:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - e:\users\Korman\AppData\Roaming\Mozilla\Firefox\Profiles\7rg0wv8r.default\
FF - prefs.js: browser.startup.homepage - seznam.cz
FF - component: e:\program files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}\components\SkypeFfComponent.dll
FF - component: e:\users\Korman\AppData\Roaming\Mozilla\Firefox\Profiles\7rg0wv8r.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
FF - plugin: e:\program files\Google\Picasa3\npPicasa3.dll
---- NASTAVENÍ FIREFOXU ----
e:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
e:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
e:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
e:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
e:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
e:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
HKLM-Run-Malwarebytes Anti-Malware (reboot) - e:\program files\Malwarebytes' Anti-Malware\mbam.exe
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EverestDriver]
"ImagePath"="\??\e:\program files\Lavalys\EVEREST Corporate Edition\kerneld.wnt"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-07-05 20:56:52
ComboFix-quarantined-files.txt 2010-07-05 18:56
Před spuštěním: Volných bajtů: 129 431 891 968
Po spuštění: Volných bajtů: 129 383 493 632
- - End Of File - - F72ACCC671D6F517F903DD3C70D6695D
ComboFix 10-07-04.02 - Korman 05.07.2010 20:42:28.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1033.18.3326.2219 [GMT 2:00]
Spuštěný z: e:\users\Korman\Downloads\ComboFix.exe
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
E:\Install.exe
e:\users\Korman\AppData\Roaming\Microsoft\Windows\Recent\Desktop (1).ini
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-06-05 do 2010-07-05 )))))))))))))))))))))))))))))))
.
2010-07-05 18:52 . 2010-07-05 18:53 -------- d-----w- e:\users\Korman\AppData\Local\temp
2010-07-05 18:52 . 2010-07-05 18:52 -------- d-----w- e:\users\Default\AppData\Local\temp
2010-07-05 18:52 . 2010-07-05 18:52 -------- d-----w- e:\users\Administrator\AppData\Local\temp
2010-07-05 16:20 . 2010-06-14 13:58 21320 ----a-w- e:\windows\system32\authuitu.dll
2010-07-05 16:20 . 2010-06-14 13:58 30024 ----a-w- e:\windows\system32\uxtuneup.dll
2010-07-05 11:19 . 2010-07-05 18:33 -------- d-----w- e:\program files\Spyware Doctor
2010-07-05 11:19 . 2010-07-05 18:33 -------- d-----w- e:\program files\Common Files\PC Tools
2010-07-05 10:12 . 2010-07-05 10:12 -------- d-----w- e:\users\Korman\AppData\Roaming\Malwarebytes
2010-07-05 10:11 . 2010-07-05 10:11 -------- d-----w- e:\programdata\Malwarebytes
2010-07-05 10:11 . 2010-07-05 18:33 -------- d-----w- e:\program files\Malwarebytes' Anti-Malware
2010-07-05 09:23 . 2010-07-05 09:23 388096 ----a-r- e:\users\Korman\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-07-05 09:23 . 2010-07-05 09:23 -------- d-----w- e:\program files\Trend Micro
2010-07-02 19:12 . 2010-07-02 19:12 -------- d-----w- e:\users\Korman\AppData\Roaming\ATI
2010-07-02 19:12 . 2010-07-02 19:12 -------- d-----w- e:\users\Korman\AppData\Local\ATI
2010-07-02 19:12 . 2010-07-02 19:12 -------- d-----w- e:\programdata\ATI
2010-07-02 19:11 . 2010-07-02 19:11 -------- d-----w- e:\program files\Common Files\ATI Technologies
2010-07-02 19:09 . 2010-07-02 19:09 -------- d-----w- e:\program files\ATI
2010-07-02 19:08 . 2010-07-02 19:11 -------- d-----w- e:\program files\ATI Technologies
2010-07-02 19:08 . 2010-07-02 19:08 -------- d-----w- E:\ATI
2010-07-02 09:50 . 2010-07-02 09:50 -------- d-----w- e:\windows\system32\RTCOM
2010-07-01 20:36 . 2010-07-01 20:36 798771 ----a-w- e:\programdata\Microsoft\Microsoft Antimalware\LocalCopy\{F1ABA6F6-ED2E-C0C0-B8CC-90C584792B16}-WebIE.dll
2010-07-01 20:36 . 2010-07-01 20:36 325120 ----a-w- e:\programdata\Microsoft\Microsoft Antimalware\LocalCopy\{8B5DDDEF-8AEC-B861-87D8-119E484C023D}-iPhoneNSE.dll
2010-07-01 20:36 . 2010-07-01 20:36 163840 ----a-w- e:\programdata\Microsoft\Microsoft Antimalware\LocalCopy\{35342421-D409-1A7D-CCC0-815D0331BC27}-PWRISOSH.DLL
2010-07-01 20:36 . 2010-07-01 20:36 141824 ----a-w- e:\programdata\Microsoft\Microsoft Antimalware\LocalCopy\{E2DAA357-6D86-204A-92D6-6BDDD72B1F48}-rarext.dll
2010-07-01 07:09 . 2010-07-01 07:10 -------- d-----w- e:\users\Korman\AppData\Local\Google
2010-07-01 07:09 . 2010-07-01 07:09 -------- d-----w- e:\program files\Google
2010-06-30 13:51 . 2010-07-02 19:17 137464 ----a-w- e:\windows\system32\drivers\PnkBstrK.sys
2010-06-30 13:51 . 2010-06-30 13:51 139152 ----a-w- e:\users\Korman\AppData\Roaming\PnkBstrK.sys
2010-06-30 13:51 . 2010-07-02 19:16 214520 ----a-w- e:\windows\system32\PnkBstrB.exe
2010-06-30 13:50 . 2010-06-30 13:51 75064 ----a-w- e:\windows\system32\PnkBstrA.exe
2010-06-30 13:50 . 2010-06-30 13:50 794408 ----a-w- e:\windows\system32\pbsvc.exe
2010-06-29 19:16 . 2010-06-29 19:16 -------- d-----w- e:\users\Korman\AppData\Local\PunkBuster
2010-06-29 19:04 . 2010-07-02 21:54 -------- d-----w- e:\users\Korman\AppData\Roaming\HLSW
2010-06-29 19:04 . 2010-06-29 19:04 -------- d-s---w- e:\program files\HLSW
2010-06-29 18:29 . 2010-06-30 10:43 -------- d-----w- e:\program files\Activision
2010-06-29 18:28 . 2010-06-29 18:28 -------- d-sh--w- e:\windows\ftpcache
2010-06-29 18:13 . 2010-06-29 18:13 -------- d-----w- e:\program files\PowerISO
2010-06-27 16:57 . 2010-06-27 16:57 -------- d-----w- e:\users\Korman\AppData\Roaming\Ubisoft
2010-06-27 16:57 . 2010-06-27 16:57 -------- d-----w- e:\programdata\Ubisoft
2010-06-27 16:17 . 2005-05-26 13:34 2297552 ----a-w- e:\windows\system32\d3dx9_26.dll
2010-06-27 16:09 . 2010-06-29 19:23 -------- d-----w- e:\program files\Ubisoft
2010-06-27 16:09 . 2010-07-02 09:49 -------- d--h--w- e:\program files\InstallShield Installation Information
2010-06-27 12:19 . 2009-11-11 16:21 159800 ----a-w- e:\users\Korman\AppData\Roaming\Mozilla\Firefox\Profiles\7rg0wv8r.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF.dll
2010-06-27 12:19 . 2009-11-11 16:13 163898 ----a-w- e:\users\Korman\AppData\Roaming\Mozilla\Firefox\Profiles\7rg0wv8r.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
2010-06-27 08:01 . 2010-06-27 08:01 -------- d-----w- e:\program files\PC translator
2010-06-27 07:59 . 2010-06-27 07:59 798771 ----a-w- e:\programdata\LangSoft\WebIE.dll
2010-06-27 07:59 . 2010-06-27 07:59 356352 ----a-w- e:\programdata\LangSoft\TrnOutl.dll
2010-06-27 07:59 . 2010-06-27 07:59 299008 ----a-w- e:\programdata\LangSoft\TrnWord.dll
2010-06-27 07:58 . 2010-06-27 07:59 -------- d-----w- e:\programdata\LangSoft
2010-06-27 07:57 . 2010-06-28 19:46 -------- d-----w- e:\users\Korman\AppData\Roaming\LangSoft
2010-06-25 17:15 . 2007-10-23 07:27 110592 ----a-w- e:\users\Korman\AppData\Roaming\U3\temp\cleanup.exe
2010-06-25 17:14 . 2008-05-02 08:41 3493888 ---ha-w- e:\users\Korman\AppData\Roaming\U3\temp\Launchpad Removal.exe
2010-06-25 17:14 . 2010-07-01 20:08 -------- d-----w- e:\users\Korman\AppData\Roaming\U3
2010-06-25 04:27 . 2009-11-25 10:47 99176 ----a-w- e:\windows\system32\PresentationHostProxy.dll
2010-06-25 04:27 . 2009-11-25 10:47 49472 ----a-w- e:\windows\system32\netfxperf.dll
2010-06-25 04:27 . 2009-11-25 10:47 297808 ----a-w- e:\windows\system32\mscoree.dll
2010-06-25 04:27 . 2009-11-25 10:47 295264 ----a-w- e:\windows\system32\PresentationHost.exe
2010-06-25 04:27 . 2009-11-25 10:47 1130824 ----a-w- e:\windows\system32\dfshim.dll
2010-06-24 18:38 . 2010-03-24 06:37 1286456 ----a-w- e:\windows\system32\ntdll.dll
2010-06-24 18:38 . 2010-05-09 09:14 641536 ----a-w- e:\windows\system32\CPFilters.dll
2010-06-24 18:38 . 2010-05-09 09:14 417792 ----a-w- e:\windows\system32\msdri.dll
2010-06-21 04:39 . 2010-06-21 04:39 -------- d-----w- e:\program files\iPod
2010-06-21 04:39 . 2010-06-21 04:39 -------- d-----w- e:\program files\iTunes
2010-06-21 04:37 . 2010-06-21 04:37 -------- d-----w- e:\program files\Bonjour
2010-06-21 04:35 . 2010-06-21 04:35 72504 ----a-w- e:\programdata\Apple Computer\Installer Cache\iTunes 9.2.0.61\SetupAdmin.exe
2010-06-14 15:09 . 2010-07-02 08:00 -------- d-----w- e:\users\Korman\AppData\Local\Diagnostics
2010-06-13 12:55 . 2010-06-13 12:55 -------- d-----w- e:\programdata\regid.1986-12.com.adobe
2010-06-13 12:45 . 2010-06-13 12:45 -------- d-----w- e:\program files\Adobe Media Player
2010-06-13 12:44 . 2010-06-13 12:43 38784 ----a-w- e:\users\Default\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2010-06-13 12:44 . 2010-06-13 12:44 -------- d-----w- e:\program files\Common Files\Adobe AIR
2010-06-12 18:00 . 2010-06-12 08:16 -------- d-----w- e:\windows\Panther
2010-06-12 17:52 . 2010-06-12 10:53 -------- d-----w- E:\Windows.old
2010-06-12 17:03 . 2010-06-12 17:03 0 ----a-w- e:\windows\ativpsrm.bin
2010-06-12 15:33 . 2010-06-12 15:33 -------- d-----w- e:\program files\Microsoft CAPICOM 2.1.0.2
2010-06-12 15:27 . 2010-06-12 15:27 -------- d-----w- e:\users\Default\AppData\Local\Microsoft Help
2010-06-12 14:54 . 2008-11-10 09:41 32656 ----a-w- e:\windows\system32\msonpmon.dll
2010-06-12 14:54 . 2006-10-26 17:56 33104 ----a-w- e:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2010-06-12 14:52 . 2010-06-12 15:30 -------- d-----w- e:\program files\Microsoft Works
2010-06-12 14:49 . 2010-06-12 14:49 -------- d-----w- e:\windows\PCHEALTH
2010-06-12 14:49 . 2010-06-25 04:28 -------- d-----w- e:\program files\Microsoft.NET
2010-06-12 14:47 . 2010-06-12 14:47 -------- d-----w- e:\program files\Microsoft Visual Studio 8
2010-06-12 14:46 . 2010-06-12 14:46 -------- d-----w- e:\users\Korman\AppData\Local\Microsoft Help
2010-06-12 14:46 . 2010-06-13 19:27 -------- d-----w- e:\programdata\Microsoft Help
2010-06-12 14:38 . 2010-06-13 12:58 -------- d-----w- e:\users\Korman\AppData\Local\Adobe
2010-06-12 11:45 . 2010-06-12 11:45 -------- d-----w- e:\program files\Lavalys
2010-06-12 11:19 . 2010-07-05 18:41 631076 ----a-w- e:\windows\system32\perfh005.dat
2010-06-12 11:19 . 2010-07-05 18:41 121716 ----a-w- e:\windows\system32\perfc005.dat
2010-06-12 11:19 . 2010-06-12 10:27 36232 ----a-w- e:\windows\system32\perfd005.dat
2010-06-12 11:19 . 2010-06-12 10:27 292004 ----a-w- e:\windows\system32\perfi005.dat
2010-06-12 11:06 . 2010-06-12 11:06 -------- d-----w- e:\windows\cs-CZ
2010-06-12 11:06 . 2010-06-12 11:06 -------- d-----w- e:\windows\system32\cs
2010-06-12 11:05 . 2010-06-12 11:05 -------- d-----w- e:\windows\system32\XPSViewer
2010-06-12 11:05 . 2010-06-12 11:05 -------- d-----w- e:\windows\system32\drivers\cs-CZ
2010-06-12 11:05 . 2010-06-12 11:05 -------- d-----w- e:\windows\system32\Spool\prtprocs\w32x86\cs-CZ
2010-06-12 11:05 . 2010-06-12 11:05 -------- d-----w- e:\windows\system32\wbem\cs-CZ
2010-06-12 10:54 . 2010-06-12 10:55 -------- d-----w- e:\programdata\ScanSoft
2010-06-12 10:52 . 2010-07-02 09:49 -------- d-----w- e:\program files\Common Files\InstallShield
2010-06-12 10:51 . 2010-06-12 10:51 -------- d-----w- e:\program files\Common Files\CANON
2010-06-12 10:50 . 2010-06-12 10:50 -------- d--h--w- e:\programdata\CanonBJ
2010-06-12 10:50 . 2007-03-18 20:00 69632 ----a-w- e:\windows\system32\Spool\prtprocs\w32x86\CNMPP8S.DLL
2010-06-12 10:50 . 2007-03-18 20:00 27136 ----a-w- e:\windows\system32\Spool\prtprocs\w32x86\CNMPD8S.DLL
2010-06-12 10:49 . 2010-06-12 10:49 -------- d--h--w- e:\windows\system32\CanonIJ Uninstaller Information
2010-06-12 10:49 . 2007-03-18 20:00 215040 ----a-w- e:\windows\system32\CNMLM8S.DLL
2010-06-12 10:48 . 2007-03-15 05:12 188416 ----a-w- e:\windows\system32\CNC210O.DLL
2010-06-12 10:48 . 2007-03-23 07:30 1400832 ----a-w- e:\windows\system32\CNC210C.DLL
2010-06-12 10:48 . 2007-03-23 07:29 98304 ----a-w- e:\windows\system32\CNC210I.DLL
2010-06-12 10:48 . 2007-03-19 01:16 200704 ----a-w- e:\windows\system32\CNC210L.DLL
2010-06-12 10:48 . 2010-06-12 10:48 -------- d--h--w- e:\program files\CanonBJ
2010-06-12 10:47 . 2010-06-12 11:01 -------- d-----w- e:\program files\Canon
2010-06-12 10:42 . 2010-04-28 05:44 54632 ----a-w- e:\windows\system32\drivers\fssfltr.sys
2010-06-12 10:42 . 2010-06-12 10:42 -------- d-----w- e:\program files\Microsoft Sync Framework
2010-06-12 10:41 . 2006-11-29 11:06 3426072 ----a-w- e:\windows\system32\d3dx9_32.dll
2010-06-12 10:41 . 2010-06-12 10:41 -------- d-----w- e:\program files\Microsoft SQL Server Compact Edition
2010-06-12 10:41 . 2010-06-12 10:41 -------- d-----w- e:\programdata\SlySoft
2010-06-12 10:41 . 2010-06-12 10:41 -------- d-----w- e:\program files\Microsoft
2010-06-12 10:40 . 2010-06-12 10:40 -------- d-----w- e:\program files\SlySoft
2010-06-12 10:40 . 2010-06-12 10:40 -------- d-----w- e:\program files\Windows Live SkyDrive
2010-06-12 10:40 . 2010-06-12 10:42 -------- d-----w- e:\program files\Windows Live
2010-06-12 10:39 . 2010-06-12 10:39 -------- d-----w- e:\programdata\Elaborate Bytes
2010-06-12 10:39 . 2010-06-12 10:39 -------- d-----w- e:\program files\Elaborate Bytes
2010-06-12 10:29 . 2010-06-12 10:29 -------- d-----w- e:\program files\Common Files\Windows Live
2010-06-12 10:28 . 2010-06-12 10:28 -------- d-----w- e:\program files\Microsoft Silverlight
2010-06-12 10:20 . 2009-10-10 02:57 12800 ----a-w- e:\windows\system32\drivers\sffp_sd.sys
2010-06-12 10:19 . 2010-06-12 10:19 -------- d-----w- e:\windows\system32\Wat
2010-06-12 10:14 . 2010-06-12 10:14 -------- d-----w- e:\users\Korman\AppData\Roaming\Ashampoo
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-02 09:49 . 2010-07-02 09:49 319456 ----a-w- e:\windows\DIFxAPI.dll
2010-07-02 09:49 . 2010-07-02 09:49 -------- d-----w- e:\program files\Realtek
2010-07-02 09:49 . 2010-07-02 09:49 315392 ----a-w- e:\windows\HideWin.exe
2010-06-17 14:54 . 2010-06-17 14:54 0 ---ha-w- e:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2010-06-13 18:41 . 2010-06-13 18:41 0 ---ha-w- e:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2010-06-12 14:51 . 2009-07-14 04:52 -------- d-----w- e:\program files\MSBuild
2010-06-12 11:06 . 2009-07-14 04:52 -------- d-----w- e:\program files\Windows Sidebar
2010-06-12 11:06 . 2009-07-14 02:37 -------- d-----w- e:\program files\Windows Mail
2010-06-12 11:06 . 2009-07-14 04:52 -------- d-----w- e:\program files\DVD Maker
2010-06-12 11:06 . 2009-07-14 07:50 -------- d-----w- e:\program files\Windows Journal
2010-06-12 11:06 . 2009-07-14 04:52 -------- d-----w- e:\program files\Windows Photo Viewer
2010-06-12 11:06 . 2009-07-14 04:52 -------- d-----w- e:\program files\Windows Defender
2010-06-12 11:01 . 2010-06-12 11:01 -------- d-----w- e:\programdata\CanonIJPLM
2010-06-12 10:27 . 2010-06-12 11:06 36232 ----a-w- e:\windows\inf\PERFLIB\0405\perfd.dat
2010-06-12 10:27 . 2010-06-12 11:06 36232 ----a-w- e:\windows\inf\PERFLIB\0405\perfc.dat
2010-06-12 10:27 . 2010-06-12 11:06 292004 ----a-w- e:\windows\inf\PERFLIB\0405\perfi.dat
2010-06-12 10:27 . 2010-06-12 11:06 292004 ----a-w- e:\windows\inf\PERFLIB\0405\perfh.dat
2010-06-12 09:50 . 2010-06-12 09:50 -------- d-----w- e:\programdata\Data aplikací
2010-06-12 09:35 . 2010-06-12 09:35 56 ---ha-w- e:\programdata\ezsidmv.dat
2010-06-12 08:27 . 2010-05-22 08:59 -------- d-----w- e:\users\Korman\AppData\Roaming\Xilisoft Corporation
2010-06-03 02:41 . 2010-06-03 02:41 3600384 ----a-w- e:\windows\system32\GPhotos.scr
2010-05-27 17:38 . 2010-05-27 17:38 5586432 ----a-w- e:\windows\system32\drivers\atikmdag.sys
2010-05-27 17:05 . 2010-05-27 17:05 15180800 ----a-w- e:\windows\system32\atioglxx.dll
2010-05-27 17:02 . 2010-05-27 17:02 143360 ----a-w- e:\windows\system32\atiapfxx.exe
2010-05-27 17:02 . 2010-05-27 17:02 511488 ----a-w- e:\windows\system32\aticfx32.dll
2010-05-27 17:00 . 2010-05-27 17:00 446464 ----a-w- e:\windows\system32\ATIDEMGX.dll
2010-05-27 16:59 . 2010-05-27 16:59 376832 ----a-w- e:\windows\system32\atieclxx.exe
2010-05-27 16:59 . 2010-05-27 16:59 176128 ----a-w- e:\windows\system32\atiesrxx.exe
2010-05-27 16:58 . 2010-05-27 16:58 159744 ----a-w- e:\windows\system32\atitmmxx.dll
2010-05-27 16:58 . 2010-05-27 16:58 356352 ----a-w- e:\windows\system32\atipdlxx.dll
2010-05-27 16:58 . 2010-05-27 16:58 278528 ----a-w- e:\windows\system32\Oemdspif.dll
2010-05-27 16:58 . 2010-05-27 16:58 11776 ----a-w- e:\windows\system32\atimuixx.dll
2010-05-27 16:57 . 2010-05-27 16:57 43520 ----a-w- e:\windows\system32\ati2edxx.dll
2010-05-27 16:54 . 2009-07-13 22:09 3668480 ----a-w- e:\windows\system32\atidxx32.dll
2010-05-27 16:41 . 2010-05-27 16:41 53248 ----a-w- e:\windows\system32\aticalrt.dll
2010-05-27 16:41 . 2010-05-27 16:41 53248 ----a-w- e:\windows\system32\aticalcl.dll
2010-05-27 16:39 . 2010-05-27 16:39 4096000 ----a-w- e:\windows\system32\aticaldd.dll
2010-05-27 16:37 . 2010-05-27 16:37 3798528 ----a-w- e:\windows\system32\atiumdag.dll
2010-05-27 16:35 . 2010-05-27 16:35 50176 ----a-w- e:\windows\system32\coinst.dll
2010-05-27 16:31 . 2010-05-27 16:31 3025408 ----a-w- e:\windows\system32\atiumdva.dll
2010-05-27 16:25 . 2010-05-27 16:25 237568 ----a-w- e:\windows\system32\atiadlxx.dll
2010-05-27 16:25 . 2010-05-27 16:25 12800 ----a-w- e:\windows\system32\atiglpxx.dll
2010-05-27 16:25 . 2010-05-27 16:25 16896 ----a-w- e:\windows\system32\atigktxx.dll
2010-05-27 16:25 . 2010-05-27 16:25 209920 ----a-w- e:\windows\system32\drivers\atikmpag.sys
2010-05-27 16:24 . 2010-05-27 16:24 30208 ----a-w- e:\windows\system32\atiuxpag.dll
2010-05-27 16:24 . 2010-05-27 16:24 22528 ----a-w- e:\windows\system32\atiu9pag.dll
2010-05-27 16:24 . 2010-05-27 16:24 53248 ----a-w- e:\windows\system32\drivers\ati2erec.dll
2010-05-27 16:20 . 2010-05-27 16:20 52736 ----a-w- e:\windows\system32\atimpc32.dll
2010-05-27 16:20 . 2010-05-27 16:20 52736 ----a-w- e:\windows\system32\amdpcom32.dll
2010-05-27 07:24 . 2010-06-12 08:25 34304 ----a-w- e:\windows\system32\atmlib.dll
2010-05-27 03:49 . 2010-06-12 08:25 293888 ----a-w- e:\windows\system32\atmfd.dll
2010-05-21 05:18 . 2010-06-12 08:25 977920 ----a-w- e:\windows\system32\wininet.dll
2010-05-18 14:35 . 2010-05-18 14:35 91424 ----a-w- e:\windows\system32\dnssd.dll
2010-05-18 14:35 . 2010-05-18 14:35 107808 ----a-w- e:\windows\system32\dns-sd.exe
2010-05-01 14:49 . 2010-06-12 08:25 2326528 ----a-w- e:\windows\system32\win32k.sys
2010-04-29 15:37 . 2010-04-29 15:37 2137 ----a-w- e:\windows\system32\atipblag.dat
2010-04-23 07:13 . 2010-06-12 08:25 2048 ----a-w- e:\windows\system32\tzres.dll
2010-04-19 18:47 . 2010-04-19 18:47 3062048 ----a-w- e:\windows\system32\usbaaplrc.dll
2010-04-19 18:47 . 2010-04-19 18:47 41984 ----a-w- e:\windows\system32\drivers\usbaapl.sys
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- e:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- e:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2010-02-04 14:50 1197448 ----a-w- e:\program files\Ask.com\GenericAskToolbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "e:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="e:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
"Skype"="e:\program files\Skype\Phone\Skype.exe" [2010-05-13 26192168]
"uTorrent"="e:\program files\uTorrent\uTorrent.exe" [2010-06-12 322352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Monitor"="e:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]
"QuickTime Task"="e:\program files\QuickTime\QTTask.exe" [2010-03-17 421888]
"MSSE"="e:\program files\Microsoft Security Essentials\msseces.exe" [2010-06-01 1093208]
"CloneCDTray"="e:\program files\SlySoft\CloneCD\CloneCDTray.exe" [2009-01-29 57344]
"CanonSolutionMenu"="e:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696]
"CanonMyPrinter"="e:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-04-03 1603152]
"GrooveMonitor"="e:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"AdobeAAMUpdater-1.0"="e:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"SwitchBoard"="e:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS5ServiceManager"="e:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" [2010-02-22 406992]
"PWRISOVM.EXE"="e:\program files\PowerISO\PWRISOVM.EXE" [2009-11-09 180224]
"RtHDVCpl"="RtHDVCpl.exe" [2008-07-03 6266880]
"Skytel"="Skytel.exe" [2008-06-25 1826816]
"StartCCC"="e:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-05-27 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Steam"="e:\program files\Steam\Steam.exe" -silent
"QIP Internet Guardian"=e:\users\Korman\AppData\Roaming\QipGuard\QipGuard.exe
"BrowserChoice"="e:\windows\System32\browserchoice.exe" /run
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Adobe Reader Speed Launcher"="e:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
"Adobe ARM"="e:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"iTunesHelper"="e:\program files\iTunes\iTunesHelper.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
"ISTray"="e:\program files\Spyware Doctor\pctsTray.exe"
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;e:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3 EverestDriver;Lavalys EVEREST Kernel Driver;e:\program files\Lavalys\EVEREST Corporate Edition\kerneld.wnt [2010-03-30 27760]
R3 SwitchBoard;SwitchBoard;e:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 WatAdminSvc;Služba Technologie aktivace Windows;e:\windows\system32\Wat\WatAdminSvc.exe [2010-06-12 1343400]
S2 AMD External Events Utility;AMD External Events Utility;e:\windows\system32\atiesrxx.exe [2010-05-27 176128]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;e:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [2010-06-14 1051976]
S3 amdkmdag;amdkmdag;e:\windows\system32\DRIVERS\atikmdag.sys [2010-05-27 5586432]
S3 amdkmdap;amdkmdap;e:\windows\system32\DRIVERS\atikmpag.sys [2010-05-27 209920]
S3 MpNWMon;Microsoft Malware Protection Network Driver;e:\windows\system32\DRIVERS\MpNWMon.sys [2010-03-25 42368]
S3 PAC207;SoC PC-Camera;e:\windows\system32\DRIVERS\PFC027.SYS [2006-12-05 507136]
S3 RTL8167;Realtek 8167 NT Driver;e:\windows\system32\DRIVERS\Rt86win7.sys [2009-11-05 230912]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;e:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [2010-02-25 10064]
S4 MBAMProtector;MBAMProtector;e:\windows\system32\drivers\mbam.sys [x]
S4 MBAMService;MBAMService;e:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2010-04-29 304464]
S4 PCTCore;PCTools KDS;e:\windows\system32\drivers\PCTCore.sys [x]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
.
------- Doplňkový sken -------
.
uInternet Settings,ProxyOverride = *.local
IE: Add to Google Photos Screensa&ver - e:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - e:\progra~1\MIF5BA~1\Office12\EXCEL.EXE/3000
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - e:\programdata\LangSoft\WebIE.dll
IE: {{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - e:\program files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - e:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - e:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - e:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - e:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - e:\users\Korman\AppData\Roaming\Mozilla\Firefox\Profiles\7rg0wv8r.default\
FF - prefs.js: browser.startup.homepage - seznam.cz
FF - component: e:\program files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}\components\SkypeFfComponent.dll
FF - component: e:\users\Korman\AppData\Roaming\Mozilla\Firefox\Profiles\7rg0wv8r.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
FF - plugin: e:\program files\Google\Picasa3\npPicasa3.dll
---- NASTAVENÍ FIREFOXU ----
e:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
e:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
e:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
e:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
e:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
e:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
e:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
e:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
HKLM-Run-Malwarebytes Anti-Malware (reboot) - e:\program files\Malwarebytes' Anti-Malware\mbam.exe
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EverestDriver]
"ImagePath"="\??\e:\program files\Lavalys\EVEREST Corporate Edition\kerneld.wnt"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-07-05 20:56:52
ComboFix-quarantined-files.txt 2010-07-05 18:56
Před spuštěním: Volných bajtů: 129 431 891 968
Po spuštění: Volných bajtů: 129 383 493 632
- - End Of File - - F72ACCC671D6F517F903DD3C70D6695D