Byl jsem týden pracovně mimo proto odpovídám až nyní
zde je log po čištění :
ComboFix 14-08-24.01 - Josef 24.08.2014 19:40:43.18.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.3070.2462 [GMT 2:00]
Spuštěný z: c:\documents and settings\Josef\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Josef\Plocha\CFScript.txt
AV: AVG Internet Security 2014 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Internet Security 2014 *Disabled* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
FILE ::
"c:\windows\system32\drivers\gfibto.sys"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\ESET
c:\program files\ESET\ESET Online Scanner\esets_apiA.dll
c:\program files\ESET\ESET Online Scanner\esets_apiW.dll
c:\program files\ESET\ESET Online Scanner\esets_apiW_a.dll
c:\program files\ESET\ESET Online Scanner\ESETSmartInstaller.exe
c:\program files\ESET\ESET Online Scanner\log.txt
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\http_update.eset.com\update.ver
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\lastupd.ver
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod011C.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod09D0.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod101B.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod14B3.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod1D82.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod2182.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod242C.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod267B.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod2D97.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod2EA5.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod31F2.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod335C.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod4A1B.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod4B37.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod51EE.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod60E6.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod6739.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod6BF8.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\nod773B.nup
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\temp\em000_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\temp\em001_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\temp\em002_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\temp\em003_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\temp\em004_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\temp\em005_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\temp\em006_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\temp\em023_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\data\updfiles\upd.ver
c:\program files\ESET\ESET Online Scanner\Modules\em000_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\em001_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\em002_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\em003_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\em004_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\em005_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\em006_32.dat
c:\program files\ESET\ESET Online Scanner\Modules\em023_32.dat
c:\program files\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe
c:\program files\ESET\ESET Online Scanner\OnlineCmdLineScannerA.exe
c:\program files\ESET\ESET Online Scanner\OnlineScanner.cab
c:\program files\ESET\ESET Online Scanner\OnlineScanner.inf
c:\program files\ESET\ESET Online Scanner\OnlineScanner.ocx
c:\program files\ESET\ESET Online Scanner\OnlineScanner64.ocx
c:\program files\ESET\ESET Online Scanner\OnlineScannerApp.exe
c:\program files\ESET\ESET Online Scanner\OnlineScannerLang.dll
c:\program files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
c:\program files\ESET\ESET Online Scanner\unicows.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_GFIBTO
-------\Service_gfibto
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-07-24 do 2014-08-24 )))))))))))))))))))))))))))))))
.
.
2014-08-19 05:07 . 2014-08-19 05:07 -------- d-----w- c:\documents and settings\Josef\camingsoon
2014-08-17 20:18 . 2014-08-17 20:18 -------- d-----w- c:\documents and settings\Josef\Local Settings\Data aplikací\Adobe
2014-08-14 17:54 . 2014-08-15 20:19 29160 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2014-08-14 17:54 . 2014-08-14 17:54 -------- d-----w- c:\documents and settings\All Users\Data aplikací\RogueKiller
2014-08-14 17:28 . 2014-08-14 17:28 -------- d-----w- c:\windows\ERUNT
2014-08-14 17:16 . 2014-08-14 17:19 -------- d-----w- C:\AdwCleaner
2014-08-13 21:09 . 2010-08-30 06:34 536576 ----a-w- c:\windows\system32\sqlite3.dll
2014-08-13 18:42 . 2014-08-13 18:42 -------- d-----w- C:\NVIDIA
2014-08-13 18:22 . 2014-08-13 18:22 -------- d-----w- c:\documents and settings\Josef\Local Settings\Data aplikací\Nvidia Corporation
2014-08-12 20:25 . 2014-08-13 19:21 71344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-08-12 20:25 . 2014-08-13 19:21 699568 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-08-12 18:04 . 2014-08-13 18:30 1178624 ----a-w- c:\documents and settings\Josef\Data aplikací\siw_sdk.dll
2014-08-04 17:39 . 2014-08-04 17:39 -------- d-----w- c:\documents and settings\Josef\Data aplikací\AVG2014
2014-08-04 17:38 . 2014-08-04 17:38 -------- d-----w- c:\windows\system32\config\systemprofile\Application Data\AVG2014
2014-08-04 17:37 . 2014-08-04 17:38 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVG2014
2014-08-04 17:37 . 2014-08-04 17:37 -------- d-----w- C:\$AVG
2014-08-04 17:37 . 2014-08-04 17:37 -------- d-----w- c:\program files\AVG
2014-08-04 17:33 . 2014-08-04 20:08 -------- d-----w- c:\documents and settings\Josef\Local Settings\Data aplikací\Avg2014
2014-08-04 17:21 . 2014-08-04 17:21 -------- d-----w- C:\OETemp
2014-08-04 07:24 . 2014-08-04 07:24 -------- d-----w- c:\documents and settings\Josef\Local Settings\Data aplikací\Skype
2014-08-04 07:24 . 2014-08-04 07:24 -------- d-----w- c:\program files\Common Files\Skype
2014-08-04 07:23 . 2014-08-04 07:24 -------- d-----r- c:\program files\Skype
2014-08-02 16:11 . 2014-08-02 16:11 -------- d-----w- c:\program files\Mozilla Maintenance Service
2014-08-02 07:42 . 2014-07-02 20:43 906584 ----a-w- c:\windows\system32\nvdispgenco3234052.dll
2014-08-02 07:42 . 2014-07-02 20:43 1054552 ----a-w- c:\windows\system32\nvdispco3234052.dll
2014-08-02 07:11 . 2014-08-02 07:11 -------- d-----w- c:\program files\Common Files\Java
2014-08-02 07:11 . 2014-07-11 00:36 145408 ----a-w- c:\windows\system32\javacpl.cpl
2014-08-02 07:11 . 2014-07-11 01:02 96680 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-07-25 20:14 . 2014-02-01 19:46 28448 ----a-w- c:\windows\system32\nvhdap32.dll
2014-07-25 20:14 . 2014-02-01 19:30 129312 ----a-w- c:\windows\system32\drivers\nvhda32.sys
2014-07-02 20:43 . 2014-02-19 19:44 65536 ----a-w- c:\windows\system32\OpenCL.dll
2014-07-02 20:43 . 2013-09-21 07:21 23658496 ----a-w- c:\windows\system32\nvoglnt.dll
2014-07-02 20:43 . 2013-09-21 07:21 11169792 ----a-w- c:\windows\system32\nvopencl.dll
2014-07-02 20:43 . 2013-09-21 07:21 2977568 ----a-w- c:\windows\system32\nvcuvid.dll
2014-07-02 20:43 . 2013-09-21 07:21 11108352 ----a-w- c:\windows\system32\nvcuda.dll
2014-07-02 20:43 . 2013-09-21 07:21 2747392 ----a-w- c:\windows\system32\nvapi.dll
2014-07-02 20:43 . 2013-09-21 07:21 15286272 ----a-w- c:\windows\system32\nvcompiler.dll
2014-07-02 20:43 . 2012-09-15 18:00 4122880 ----a-w- c:\windows\system32\nv4_disp.dll
2014-07-02 20:43 . 2012-09-15 17:58 12695512 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2014-07-02 18:43 . 2014-02-19 20:22 270336 ----a-w- c:\windows\system32\nvrsru.dll
2014-07-02 18:43 . 2014-02-19 20:22 270336 ----a-w- c:\windows\system32\nvrsptb.dll
2014-07-02 18:43 . 2014-02-19 20:22 258048 ----a-w- c:\windows\system32\nvrstr.dll
2014-07-02 18:43 . 2014-02-19 20:22 258048 ----a-w- c:\windows\system32\nvrssl.dll
2014-07-02 18:43 . 2014-02-19 20:22 258048 ----a-w- c:\windows\system32\nvrssk.dll
2014-07-02 18:43 . 2014-02-19 20:22 253952 ----a-w- c:\windows\system32\nvrsth.dll
2014-07-02 18:43 . 2014-02-19 20:22 253952 ----a-w- c:\windows\system32\nvrssv.dll
2014-07-02 18:43 . 2014-02-19 20:22 229376 ----a-w- c:\windows\system32\nvrszhc.dll
2014-07-02 18:43 . 2014-02-19 20:22 126976 ----a-w- c:\windows\system32\nvrszht.dll
2014-07-02 18:43 . 2014-02-19 20:22 274432 ----a-w- c:\windows\system32\nvrspt.dll
2014-07-02 18:43 . 2014-02-19 20:22 335872 ----a-w- c:\windows\system32\nvrshe.dll
2014-07-02 18:43 . 2014-02-19 20:22 286720 ----a-w- c:\windows\system32\nvrsfr.dll
2014-07-02 18:43 . 2014-02-19 20:22 282624 ----a-w- c:\windows\system32\nvrsit.dll
2014-07-02 18:43 . 2014-02-19 20:22 282624 ----a-w- c:\windows\system32\nvrses.dll
2014-07-02 18:43 . 2014-02-19 20:22 282624 ----a-w- c:\windows\system32\nvrsel.dll
2014-07-02 18:43 . 2014-02-19 20:22 278528 ----a-w- c:\windows\system32\nvrsde.dll
2014-07-02 18:43 . 2014-02-19 20:22 274432 ----a-w- c:\windows\system32\nvrsnl.dll
2014-07-02 18:43 . 2014-02-19 20:22 274432 ----a-w- c:\windows\system32\nvrsja.dll
2014-07-02 18:43 . 2014-02-19 20:22 274432 ----a-w- c:\windows\system32\nvrsesm.dll
2014-07-02 18:43 . 2014-02-19 20:22 266240 ----a-w- c:\windows\system32\nvrsko.dll
2014-07-02 18:43 . 2014-02-19 20:22 262144 ----a-w- c:\windows\system32\nvrshu.dll
2014-07-02 18:43 . 2014-02-19 20:22 258048 ----a-w- c:\windows\system32\nvrspl.dll
2014-07-02 18:43 . 2014-02-19 20:22 253952 ----a-w- c:\windows\system32\nvrsno.dll
2014-07-02 18:43 . 2014-02-19 20:22 253952 ----a-w- c:\windows\system32\nvrsda.dll
2014-07-02 18:43 . 2014-02-19 20:22 249856 ----a-w- c:\windows\system32\nvrsfi.dll
2014-07-02 18:43 . 2014-02-19 20:22 249856 ----a-w- c:\windows\system32\nvrseng.dll
2014-07-02 18:43 . 2014-02-19 20:22 249856 ----a-w- c:\windows\system32\nvrscs.dll
2014-07-02 18:43 . 2014-02-19 20:22 335872 ----a-w- c:\windows\system32\nvrsar.dll
2014-07-02 18:41 . 2014-02-19 20:22 54272 ----a-w- c:\windows\system32\nvwddi.dll
2014-07-02 18:41 . 2014-02-19 20:22 157144 ----a-w- c:\windows\system32\nvsvc32.exe
2014-07-02 18:41 . 2014-02-19 20:22 15724320 ----a-w- c:\windows\system32\nvcpl.dll
2014-07-02 18:41 . 2014-02-19 20:22 376096 ----a-w- c:\windows\system32\nvmctray.dll
2014-07-02 18:41 . 2014-02-19 20:22 145352 ----a-w- c:\windows\system32\nvcolor.exe
2014-06-30 10:43 . 2014-06-30 10:43 121624 ----a-w- c:\windows\system32\drivers\avgdiskx.sys
2014-06-17 14:22 . 2014-06-17 14:22 188696 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2014-06-17 14:21 . 2014-06-17 14:21 197400 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2014-06-17 14:18 . 2014-06-17 14:18 241944 ----a-w- c:\windows\system32\drivers\avglogx.sys
2014-06-17 14:17 . 2014-06-17 14:17 147736 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2014-06-17 14:17 . 2014-06-17 14:17 190232 ----a-w- c:\windows\system32\drivers\avgidsdriverlx.sys
2014-06-17 14:06 . 2014-06-17 14:06 98584 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2014-06-17 14:06 . 2014-06-17 14:06 27416 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2014-06-17 14:06 . 2014-06-17 14:06 21272 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EPLTarget\P0000000000000000"="c:\windows\System32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE" [2012-02-29 249440]
"DriverMax_RESTART"="c:\program files\Innovative Solutions\DriverMax\drivermax.exe" [2014-05-29 8481656]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EEventManager"="c:\program files\Epson Software\Event Manager\EEventManager.exe" [2010-10-12 979328]
"NvBackend"="c:\program files\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-07-25 2403104]
"RTHDCPL"="RTHDCPL.EXE" [2013-10-04 20145368]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2014-07-11 256896]
"AVG_UI"="c:\program files\AVG\AVG2014\avgui.exe" [2014-08-11 5187088]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2014-07-02 15724320]
"NvMediaCenter"="NvMCTray.dll" [2014-07-02 376096]
"nwiz"="c:\program files\NVIDIA Corporation\nview\nwiz.exe" [2014-07-02 2593056]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\
BTTray.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2004-11-29 569405]
Mozilla Firefox.lnk - c:\program files\Mozilla Firefox\firefox.exe [2014-8-2 275568]
Windows Search.lnk - c:\program files\Windows Desktop Search\WindowsSearch.exe /startup [2008-5-26 123904]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ c:\progra~1\AVG\AVG2014\avgrsx.exe /sync /restart
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"Skype C2C Service"=2 (0x2)
"AdvancedSystemCareService6"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ICQ7M\\ICQ.exe"=
"c:\\Program Files\\Epson Software\\Event Manager\\EEventManager.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NetService\\NvNetworkService.exe"=
"c:\\Program Files\\AVG\\AVG2014\\avgnsx.exe"=
"c:\\Program Files\\AVG\\AVG2014\\avgdiagex.exe"=
"c:\\Program Files\\AVG\\AVG2014\\avgemcx.exe"=
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [17.6.2014 16:17 147736]
R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [17.6.2014 16:18 241944]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [17.6.2014 16:06 27416]
R0 MxEFUF;Matrox Extio Upper Function Filter;c:\windows\system32\drivers\MxEFUF32.sys [21.2.2013 22:25 102728]
R1 Avgdiskx;AVG Disk Driver;c:\windows\system32\drivers\avgdiskx.sys [30.6.2014 12:43 121624]
R1 AVGIDSDriverl;AVGIDSDriverl;c:\windows\system32\drivers\avgidsdriverlx.sys [17.6.2014 16:17 190232]
R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [17.6.2014 16:06 21272]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [17.6.2014 16:22 188696]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [17.6.2014 16:21 197400]
R2 avgfws;AVG Firewall;c:\program files\AVG\AVG2014\avgfws.exe [11.8.2014 14:42 1417160]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2014\avgidsagent.exe [11.8.2014 14:51 3244048]
R2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2014\avgwdsvc.exe [11.8.2014 14:36 289328]
R2 LiveUpdateSvc;LiveUpdate;c:\program files\IObit\LiveUpdate\LiveUpdate.exe [7.12.2013 17:16 2151200]
R2 NvNetworkService;NVIDIA Network Service;c:\program files\NVIDIA Corporation\NetService\NvNetworkService.exe [19.2.2014 22:24 1720608]
R2 TomTomHOMEService;TomTomHOMEService;c:\program files\TomTom HOME 2\TomTomHOMEService.exe [5.6.2014 4:19 93040]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [12.1.2012 20:52 30944]
R3 L1c;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\drivers\l1c51x86.sys [15.9.2012 19:17 61040]
S1 AntiLog32;AntiLog32;\??\c:\windows\system32\drivers\AntiLog32.sys --> c:\windows\system32\drivers\AntiLog32.sys [?]
S1 SBRE;SBRE;\??\c:\windows\system32\drivers\SBREdrv.sys --> c:\windows\system32\drivers\SBREdrv.sys [?]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [11.5.2013 7:39 1691480]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [12.1.2012 20:52 30944]
S3 cleanhlp;cleanhlp;c:\chipdvd\emergencykit\Run\cleanhlp32.sys [7.9.2013 2:07 50200]
S3 gHidPnp;USB Device Enhanced Function Driver;c:\windows\system32\drivers\gHidPnp.sys [22.2.2013 22:32 20480]
S3 gMouUsb;USB Mouse Device Drv;c:\windows\system32\drivers\gMouUsb.sys [22.2.2013 22:34 11520]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [22.7.2013 15:39 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [22.7.2013 15:39 8576]
S3 pimou;Pluralinput Mouse 0.8.2.0;c:\windows\system32\drivers\pimou.sys [9.5.2013 19:29 20808]
S3 RkPavproc1;RkPavproc1;\??\c:\windows\system32\drivers\RkPavproc1.sys --> c:\windows\system32\drivers\RkPavproc1.sys [?]
S3 usbcamcl;Driver for usbcamcl Device;c:\windows\system32\drivers\usbcamcl.sys [3.2.2013 21:05 38784]
.
--- Ostatní služby/ovladače v paměti ---
.
*Deregistered* - SASKUTIL
.
Obsah adresáře 'Naplánované úlohy'
.
2014-08-08 c:\windows\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
- c:\windows\system32\xp_eos.exe [2014-03-18 23:28]
.
2014-08-24 c:\windows\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
- c:\windows\system32\xp_eos.exe [2014-03-18 23:28]
.
.
------- Doplňkový sken -------
.
uStart Page =
hxxp://www.seznam.cz/uInternet Connection Wizard,ShellNext = iexplore
IE: Send To &Bluetooth - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: {{781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - c:\program files\ICQ7M\ICQ.exe
TCP: DhcpNameServer = 46.252.224.18 8.8.8.8
FF - ProfilePath - c:\documents and settings\Josef\Data aplikací\Mozilla\Firefox\Profiles\lsdcg728.default-1395259197171\
FF - prefs.js: browser.startup.homepage -
hxxps://www.seznam.cz/FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-ESET Online Scanner - c:\program files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2014-08-24 19:52
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(316)
c:\program files\Windows Desktop Search\deskbar.dll
c:\program files\Windows Desktop Search\cs-cz\dbres.dll.mui
c:\program files\Windows Desktop Search\dbres.dll
c:\program files\Windows Desktop Search\wordwheel.dll
c:\program files\Windows Desktop Search\cs-cz\msnlExtRes.dll.mui
c:\program files\Windows Desktop Search\msnlExtRes.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\btncopy.dll
c:\program files\Nokia 1\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia 1\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia 1\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia 1\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\Java\jre7\bin\jqs.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\RunDLL32.exe
c:\windows\system32\nvsvc32.exe
c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
c:\program files\Windows Desktop Search\WindowsSearch.exe
c:\windows\system32\SearchIndexer.exe
c:\windows\system32\wbem\wmiapsrv.exe
.
**************************************************************************
.
Celkový čas: 2014-08-24 19:58:04 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-08-24 17:58
ComboFix2.txt 2014-08-16 11:01
ComboFix3.txt 2014-08-11 19:29
ComboFix4.txt 2014-07-22 17:04
ComboFix5.txt 2014-08-24 17:37
.
Před spuštěním: Volných bajtů: 150 532 448 256
Po spuštění: Volných bajtů: 150 509 322 240
.
- - End Of File - - 4634843205D29158922EA7F5832B1FA3
413FC2A0C716421B3158746D63736515