Prosím o kontrolu logu - pomalé PC Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod jaro3 » 28 lis 2008 22:19

A co jsi udělal to poslední? Od samého začátku máš přeci problémy s netem.
Tak zkus povolit ty doplňky a prvky active x.Ovl. panely-možnosti internetu-upřesnit a tam to donastavit.
Nemáš jiný prohlížeč mimo IE?
Zkusil jsi tu opravu pomocí Dial-a-fix?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
charalambidis stanislav
Level 1.5
Level 1.5
Příspěvky: 113
Registrován: prosinec 06
Bydliště: zlaté hory
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod charalambidis stanislav » 29 lis 2008 10:08

Už net jede, příčina nebyla v PC, ale v rozváděcí krabici ze které je napojeno více příjemců netu. Takže zase jede a tady jsou logy:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:01:27, on 29.11.2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\SkypePM.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Documents and Settings\Uživatel\Plocha\antiviráky\Hijaski\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{AD742D62-31DD-48D5-B33D-582B7DA96C5D}: NameServer = 84.244.64.2,212.158.128.2
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: InCD Helper (read only) (InCDsrvR) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: O&O Defrag 2000 (OOD2000) - O&O Software GmbH - C:\WINDOWS\system32\OOD2000.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

--
End of file - 6921 bytes

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod jaro3 » 29 lis 2008 11:48

log O.K.
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix[mezera]/u

takže jestli nejsou problémy,tak vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,SDFixu,Avengeru,MWAVu atd.-stáhneš>spustíš

Aktualizuj javu:
Java SE Runtime Environment 6u10

Vyber OS ( předpokládám Windows), zatržítko agree-continue
Vyber:
Windows Offline Installation
jre-6u10-windows-i586-p.exe
Ostatní javy odeber v přidat/odebrat programy.
Je to vše.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

charalambidis stanislav
Level 1.5
Level 1.5
Příspěvky: 113
Registrován: prosinec 06
Bydliště: zlaté hory
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod charalambidis stanislav » 02 pro 2008 18:05

Nedaří se mi nainstalovat T Cleaner. Píše to T-Cleaner není platná aplikace Win32.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod jaro3 » 02 pro 2008 18:09

Vypni Antivir AVG , stáhni znovu, antivir nech vypnutý , proveď čištění pak můžeš T-Cleaner smáznout a zapnout AVG.Nemají se rády...
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

charalambidis stanislav
Level 1.5
Level 1.5
Příspěvky: 113
Registrován: prosinec 06
Bydliště: zlaté hory
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod charalambidis stanislav » 11 pro 2008 22:06

Omlouvám se, musel jsem odjet, ale už jsem zase tady. S tim AVG mam trochu problem. Nemohu s nim nic dělat. Chtěl jsem ho i odinstalovat, ale marně. Pokusím se odchytit toho, co mi ho instaloval, asi tam zase dám avasta a pak se ozvu. Zatím díky, nebo máš pro mě lepší řešení?

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod jaro3 » 12 pro 2008 08:30

Tady na to téma, můžeš vyzkoušet.
viewtopic.php?f=47&t=34191
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

charalambidis stanislav
Level 1.5
Level 1.5
Příspěvky: 113
Registrován: prosinec 06
Bydliště: zlaté hory
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod charalambidis stanislav » 16 pro 2008 18:56

Zatím se mi z toho nic nedaří. Zkusil jsem to i KCleanerem a nic.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod jaro3 » 16 pro 2008 19:41

Vůbec nejde odinstalovat? Ani tím programem? Máš ho v přidat/odebrat programech?
Najdi a zastav procesy (klik na dolní lištu pravým-vyber správce úloh- procesy):
avgam.exe
avgnsx.exe
avgupd.exe
avgtray.exe
avgrsx.exe
avgrsx.exe-
může tam být několikrát..
Start-ovl.panely-nástroje pro správu-služby-vše co se týká AVG zastavit.

Start-spustit-napiš: regedit-vlevo vyhledej:
HKEY_LOCAL_MACHINE\SOFTWARE\AVG a celou složku smaž.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run je tam podklíč:AVG8_TRAY- tak ten smaž.
Je to dost náročné a každý omyl může znamenat kolaps..
Jestli se Ti do toho nechce, tak sem dej zase log z ComboFixu a já Ti následně vypracuji script..

EDIT: nedělej to, jsou tam ještě ovladače..dej sem nový log z CF a já to vypracuji...
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

charalambidis stanislav
Level 1.5
Level 1.5
Příspěvky: 113
Registrován: prosinec 06
Bydliště: zlaté hory
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod charalambidis stanislav » 17 pro 2008 21:42

ComboFix 08-12-16.03 - Uživatel 2008-12-17 20:59:37.5 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.1.1029.18.383.103 [GMT 1:00]
Spuštěný z: c:\documents and settings\Uživatel\Plocha\antiviráky\ComboFix.exe
* Vytvořen nový Bod Obnovení
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\regedit.com
c:\windows\system32\taskmgr.com

.
((((((((((((((((((((((((( Soubory vytvořené od 2008-11-17 do 2008-12-17 )))))))))))))))))))))))))))))))
.

2008-12-16 20:25 . 2008-12-16 20:25 <DIR> d-------- c:\program files\Uniblue
2008-12-16 20:25 . 2008-12-16 20:25 <DIR> d-------- c:\documents and settings\Uživatel\Data aplikací\Uniblue
2008-12-14 20:58 . 2008-12-14 20:59 <DIR> d-------- C:\rsit
2008-12-14 20:39 . 2008-12-14 20:39 <DIR> d-------- c:\documents and settings\Uživatel\Data aplikací\KC Softwares
2008-12-02 11:02 . 2008-12-02 11:06 50,689,960 --a------ C:\avg-free-edition.exe
2008-11-29 17:43 . 2008-12-16 20:25 <DIR> d--h-c--- c:\documents and settings\All Users\Data aplikací\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}
2008-11-26 09:02 . 2008-11-26 09:02 578,560 --a--c--- c:\windows\system32\dllcache\user32.dll
2008-11-26 08:59 . 2008-11-26 08:59 <DIR> d-------- c:\windows\ERUNT
2008-11-25 12:42 . 2008-11-25 12:42 <DIR> d-------- c:\documents and settings\Uživatel\Data aplikací\Malwarebytes
2008-11-25 12:41 . 2008-12-16 21:05 <DIR> d-------- c:\program files\Malwarebytes' Anti-Malware
2008-11-25 12:41 . 2008-11-25 12:41 <DIR> d-------- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2008-11-25 12:41 . 2008-12-03 19:52 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2008-11-25 12:41 . 2008-12-03 19:52 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2008-11-20 08:55 . 2008-11-26 08:57 234 --a------ c:\windows\system32\drivers\fwdrv.err
2008-11-18 22:25 . 2008-11-18 22:25 127 --a------ c:\windows\system32\MRT.INI
2008-11-17 12:28 . 2008-11-17 12:29 <DIR> d-------- C:\My Downloads

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-17 20:23 --------- d-----w c:\documents and settings\Uživatel\Data aplikací\Skype
2008-12-17 19:26 --------- d-----w c:\documents and settings\Uživatel\Data aplikací\OpenOffice.org2
2008-12-17 15:07 --------- d-----w c:\documents and settings\Uživatel\Data aplikací\skypePM
2008-12-16 17:49 --------- d-----w c:\documents and settings\All Users\Data aplikací\avg8
2008-11-27 20:30 --------- d-----w c:\program files\Common Files\Wise Installation Wizard
2008-11-12 16:44 --------- d-----w c:\program files\Zoner
2008-11-08 15:25 --------- d-----w c:\program files\TuneUp Utilities 2008
2008-11-08 15:20 306,432 ----a-w c:\windows\system32\TuneUpDefragService.exe
2008-11-08 15:20 --------- d-----w c:\documents and settings\All Users\Data aplikací\TuneUp Software
2008-11-08 15:03 --------- d-----w c:\program files\Lavasoft RegHance
2008-11-08 14:52 --------- d-----w c:\program files\Lavasoft
2008-11-08 14:52 --------- d-----w c:\documents and settings\Uživatel\Data aplikací\Lavasoft
2008-11-06 10:11 90,632 ----a-w c:\windows\system32\drivers\avgtdix.sys
2008-11-03 06:20 98,440 ----a-w c:\windows\system32\drivers\avgldx86.sys
2008-10-24 11:21 455,296 ----a-w c:\windows\system32\drivers\mrxsmb.sys
2008-10-23 12:42 286,720 ----a-w c:\windows\system32\gdi32.dll
2008-10-20 16:58 --------- d-----w c:\program files\Scorpions WinCheater
2008-10-20 16:54 --------- d-----w c:\program files\Changes
2008-10-16 20:33 826,368 ----a-w c:\windows\system32\wininet.dll
2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
2008-10-03 10:04 247,326 ----a-w c:\windows\system32\strmdll.dll
2008-04-02 13:56 32 ----a-w c:\documents and settings\All Users\Data aplikací\ezsid.dat
.

((((((((((((((((((((((((((((( snapshot@2008-11-26_22.40.16.09 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-08-26 08:26:56 124,928 -c----w c:\windows\ie7updates\KB958215-IE7\advpack.dll
+ 2008-08-26 08:26:56 347,136 -c----w c:\windows\ie7updates\KB958215-IE7\dxtmsft.dll
+ 2008-08-26 08:26:56 214,528 -c----w c:\windows\ie7updates\KB958215-IE7\dxtrans.dll
+ 2008-08-26 08:26:56 133,120 -c----w c:\windows\ie7updates\KB958215-IE7\extmgr.dll
+ 2008-08-26 08:26:56 63,488 -c----w c:\windows\ie7updates\KB958215-IE7\icardie.dll
+ 2008-08-25 08:36:29 70,656 -c----w c:\windows\ie7updates\KB958215-IE7\ie4uinit.exe
+ 2008-08-26 08:26:56 153,088 -c----w c:\windows\ie7updates\KB958215-IE7\ieakeng.dll
+ 2008-08-26 08:26:56 230,400 -c----w c:\windows\ie7updates\KB958215-IE7\ieaksie.dll
+ 2008-08-23 05:54:51 161,792 -c----w c:\windows\ie7updates\KB958215-IE7\ieakui.dll
+ 2008-08-26 08:26:56 383,488 -c----w c:\windows\ie7updates\KB958215-IE7\ieapfltr.dll
+ 2008-08-26 08:26:57 384,512 -c----w c:\windows\ie7updates\KB958215-IE7\iedkcs32.dll
+ 2008-10-03 17:26:29 6,066,176 -c----w c:\windows\ie7updates\KB958215-IE7\ieframe.dll
+ 2008-08-26 08:26:58 44,544 -c----w c:\windows\ie7updates\KB958215-IE7\iernonce.dll
+ 2008-08-26 08:26:58 267,776 -c----w c:\windows\ie7updates\KB958215-IE7\iertutil.dll
+ 2008-08-25 08:38:00 13,824 -c----w c:\windows\ie7updates\KB958215-IE7\ieudinit.exe
+ 2008-08-23 05:56:15 635,848 -c----w c:\windows\ie7updates\KB958215-IE7\iexplore.exe
+ 2008-08-26 08:26:59 27,648 -c----w c:\windows\ie7updates\KB958215-IE7\jsproxy.dll
+ 2008-08-26 08:26:59 459,264 -c----w c:\windows\ie7updates\KB958215-IE7\msfeeds.dll
+ 2008-08-26 08:26:59 52,224 -c----w c:\windows\ie7updates\KB958215-IE7\msfeedsbs.dll
+ 2008-08-27 09:27:02 3,593,216 -c----w c:\windows\ie7updates\KB958215-IE7\mshtml.dll
+ 2008-08-26 08:27:01 477,696 -c----w c:\windows\ie7updates\KB958215-IE7\mshtmled.dll
+ 2008-08-26 08:27:01 193,024 -c----w c:\windows\ie7updates\KB958215-IE7\msrating.dll
+ 2008-08-26 08:27:01 671,232 -c----w c:\windows\ie7updates\KB958215-IE7\mstime.dll
+ 2008-08-26 08:27:01 102,912 -c----w c:\windows\ie7updates\KB958215-IE7\occache.dll
+ 2008-08-26 08:27:01 44,544 -c----w c:\windows\ie7updates\KB958215-IE7\pngfilt.dll
+ 2007-03-06 01:07:37 215,776 -c----w c:\windows\ie7updates\KB958215-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:08:50 379,616 -c----w c:\windows\ie7updates\KB958215-IE7\spuninst\updspapi.dll
+ 2008-08-26 08:27:01 105,984 -c----w c:\windows\ie7updates\KB958215-IE7\url.dll
+ 2008-08-26 08:27:02 1,159,680 -c----w c:\windows\ie7updates\KB958215-IE7\urlmon.dll
+ 2008-08-26 08:27:02 233,472 -c----w c:\windows\ie7updates\KB958215-IE7\webcheck.dll
+ 2008-08-26 08:27:02 826,368 -c----w c:\windows\ie7updates\KB958215-IE7\wininet.dll
+ 2008-04-14 03:21:36 43,520 ----a-w c:\windows\system32\admwprox.dll
+ 2008-04-14 03:21:36 290,816 ----a-w c:\windows\system32\adsiis.dll
- 2008-08-26 08:26:56 124,928 ----a-w c:\windows\system32\advpack.dll
+ 2008-10-16 20:33:48 124,928 ----a-w c:\windows\system32\advpack.dll
+ 2008-11-26 17:21:30 1,236,208 ----a-w c:\windows\system32\aswBoot.exe
+ 2008-11-26 17:15:10 97,480 ----a-w c:\windows\system32\AvastSS.scr
+ 2008-04-14 03:21:36 29,696 -c--a-w c:\windows\system32\dllcache\admexs.dll
+ 2008-04-14 03:21:36 43,520 -c--a-w c:\windows\system32\dllcache\admwprox.dll
+ 2008-04-14 03:21:36 290,816 -c--a-w c:\windows\system32\dllcache\adsiis51.dll
- 2008-08-26 08:26:56 124,928 -c--a-w c:\windows\system32\dllcache\advpack.dll
+ 2008-10-16 20:33:48 124,928 -c--a-w c:\windows\system32\dllcache\advpack.dll
+ 2008-04-14 03:21:36 109,056 -c--a-w c:\windows\system32\dllcache\appconf.dll
+ 2008-04-14 03:21:37 330,752 -c--a-w c:\windows\system32\dllcache\aqueue.dll
+ 2008-04-14 03:21:37 372,736 -c--a-w c:\windows\system32\dllcache\asp51.dll
+ 2008-04-14 03:21:38 46,592 -c--a-w c:\windows\system32\dllcache\coadmin.dll
+ 2008-04-14 03:21:38 24,064 -c--a-w c:\windows\system32\dllcache\compfilt.dll
+ 2008-04-14 03:22:17 42,496 -c--a-w c:\windows\system32\dllcache\davcdata.exe
- 2008-08-26 08:26:56 347,136 -c--a-w c:\windows\system32\dllcache\dxtmsft.dll
+ 2008-10-16 20:33:48 347,136 -c--a-w c:\windows\system32\dllcache\dxtmsft.dll
- 2008-08-26 08:26:56 214,528 -c--a-w c:\windows\system32\dllcache\dxtrans.dll
+ 2008-10-16 20:33:48 214,528 -c--a-w c:\windows\system32\dllcache\dxtrans.dll
+ 2008-04-14 03:21:41 14,336 -c--a-w c:\windows\system32\dllcache\exstrace.dll
- 2008-08-26 08:26:56 133,120 -c--a-w c:\windows\system32\dllcache\extmgr.dll
+ 2008-10-16 20:33:48 133,120 -c--a-w c:\windows\system32\dllcache\extmgr.dll
+ 2008-10-23 12:42:52 286,720 -c----w c:\windows\system32\dllcache\gdi32.dll
+ 2008-04-14 03:21:42 32,256 -c--a-w c:\windows\system32\dllcache\gzip.dll
+ 2008-04-14 03:21:42 268,288 -c--a-w c:\windows\system32\dllcache\httpext.dll
+ 2008-04-14 03:21:42 8,192 -c--a-w c:\windows\system32\dllcache\httpmb51.dll
+ 2008-04-14 03:21:42 61,440 -c--a-w c:\windows\system32\dllcache\httpod51.dll
- 2008-08-26 08:26:56 63,488 -c----w c:\windows\system32\dllcache\icardie.dll
+ 2008-10-16 20:33:48 63,488 -c----w c:\windows\system32\dllcache\icardie.dll
- 2008-08-25 08:36:29 70,656 -c--a-w c:\windows\system32\dllcache\ie4uinit.exe
+ 2008-10-16 13:09:14 70,656 -c--a-w c:\windows\system32\dllcache\ie4uinit.exe
- 2008-08-26 08:26:56 153,088 -c--a-w c:\windows\system32\dllcache\ieakeng.dll
+ 2008-10-16 20:33:48 153,088 -c--a-w c:\windows\system32\dllcache\ieakeng.dll
- 2008-08-26 08:26:56 230,400 -c--a-w c:\windows\system32\dllcache\ieaksie.dll
+ 2008-10-16 20:33:48 230,400 -c--a-w c:\windows\system32\dllcache\ieaksie.dll
- 2008-08-23 05:54:51 161,792 -c--a-w c:\windows\system32\dllcache\ieakui.dll
+ 2008-10-15 07:04:53 161,792 -c--a-w c:\windows\system32\dllcache\ieakui.dll
- 2008-08-26 08:26:56 383,488 -c----w c:\windows\system32\dllcache\ieapfltr.dll
+ 2008-10-16 20:33:48 383,488 -c----w c:\windows\system32\dllcache\ieapfltr.dll
- 2008-08-26 08:26:57 384,512 -c--a-w c:\windows\system32\dllcache\iedkcs32.dll
+ 2008-10-16 20:33:48 384,512 -c--a-w c:\windows\system32\dllcache\iedkcs32.dll
- 2008-10-03 17:26:29 6,066,176 -c----w c:\windows\system32\dllcache\ieframe.dll
+ 2008-10-16 20:33:49 6,066,176 -c----w c:\windows\system32\dllcache\ieframe.dll
- 2008-08-26 08:26:58 44,544 -c--a-w c:\windows\system32\dllcache\iernonce.dll
+ 2008-10-16 20:33:49 44,544 -c--a-w c:\windows\system32\dllcache\iernonce.dll
- 2008-08-26 08:26:58 267,776 -c----w c:\windows\system32\dllcache\iertutil.dll
+ 2008-10-16 20:33:49 267,776 -c----w c:\windows\system32\dllcache\iertutil.dll
- 2008-08-25 08:38:00 13,824 -c----w c:\windows\system32\dllcache\ieudinit.exe
+ 2008-10-16 13:11:09 13,824 -c----w c:\windows\system32\dllcache\ieudinit.exe
- 2008-08-23 05:56:15 635,848 -c--a-w c:\windows\system32\dllcache\iexplore.exe
+ 2008-10-15 07:06:26 633,632 -c--a-w c:\windows\system32\dllcache\iexplore.exe
+ 2008-04-14 03:21:43 25,088 -c--a-w c:\windows\system32\dllcache\iisadmin.dll
+ 2008-04-14 03:21:43 68,608 -c--a-w c:\windows\system32\dllcache\iisext51.dll
+ 2008-04-14 03:21:43 7,168 -c--a-w c:\windows\system32\dllcache\iisfecnv.dll
+ 2008-04-14 03:21:43 145,408 -c--a-w c:\windows\system32\dllcache\iische51.dll
+ 2008-04-14 03:21:43 79,872 -c--a-w c:\windows\system32\dllcache\iislog51.dll
+ 2008-04-14 03:21:43 64,512 -c--a-w c:\windows\system32\dllcache\iismap.dll
+ 2008-04-14 03:22:26 31,232 -c--a-w c:\windows\system32\dllcache\iisrstas.exe
+ 2008-04-14 03:21:43 133,632 -c--a-w c:\windows\system32\dllcache\iisrtl.dll
+ 2008-04-14 03:21:43 81,920 -c--a-w c:\windows\system32\dllcache\ils.dll
+ 2008-04-14 03:22:26 15,872 -c--a-w c:\windows\system32\dllcache\inetin51.exe
+ 2008-04-14 03:21:43 834,048 -c--a-w c:\windows\system32\dllcache\inetmgr.dll
+ 2008-04-14 03:21:44 13,312 -c--a-w c:\windows\system32\dllcache\infoadmn.dll
+ 2008-04-14 03:21:44 257,024 -c--a-w c:\windows\system32\dllcache\infocomm.dll
+ 2008-04-14 03:21:44 68,608 -c--a-w c:\windows\system32\dllcache\isatq.dll
+ 2008-04-14 03:21:44 27,136 -c--a-w c:\windows\system32\dllcache\iscomlog.dll
- 2008-08-26 08:26:59 27,648 -c--a-w c:\windows\system32\dllcache\jsproxy.dll
+ 2008-10-16 20:33:49 27,648 -c--a-w c:\windows\system32\dllcache\jsproxy.dll
- 2006-10-18 19:03:58 100,864 -c--a-w c:\windows\system32\dllcache\logagent.exe
+ 2008-06-18 00:09:22 100,864 -c--a-w c:\windows\system32\dllcache\logagent.exe
+ 2008-04-14 03:21:45 13,312 -c--a-w c:\windows\system32\dllcache\lonsint.dll
+ 2008-04-14 03:21:45 37,888 -c--a-w c:\windows\system32\dllcache\md5filt.dll
+ 2008-04-14 03:21:45 85,504 -c--a-w c:\windows\system32\dllcache\metada51.dll
- 2008-08-26 08:26:59 459,264 -c----w c:\windows\system32\dllcache\msfeeds.dll
+ 2008-10-16 20:33:49 459,264 -c----w c:\windows\system32\dllcache\msfeeds.dll
- 2008-08-26 08:26:59 52,224 -c----w c:\windows\system32\dllcache\msfeedsbs.dll
+ 2008-10-16 20:33:49 52,224 -c----w c:\windows\system32\dllcache\msfeedsbs.dll
- 2008-08-27 09:27:02 3,593,216 -c--a-w c:\windows\system32\dllcache\mshtml.dll
+ 2008-10-17 01:03:50 3,593,216 -c--a-w c:\windows\system32\dllcache\mshtml.dll
- 2008-08-26 08:27:01 477,696 -c--a-w c:\windows\system32\dllcache\mshtmled.dll
+ 2008-10-16 20:33:50 477,696 -c--a-w c:\windows\system32\dllcache\mshtmled.dll
- 2008-08-26 08:27:01 193,024 -c--a-w c:\windows\system32\dllcache\msrating.dll
+ 2008-10-16 20:33:50 193,024 -c--a-w c:\windows\system32\dllcache\msrating.dll
- 2008-08-26 08:27:01 671,232 -c--a-w c:\windows\system32\dllcache\mstime.dll
+ 2008-10-16 20:33:50 671,232 -c--a-w c:\windows\system32\dllcache\mstime.dll
+ 2008-04-14 03:21:51 44,544 -c--a-w c:\windows\system32\dllcache\nsepm.dll
- 2008-08-26 08:27:01 102,912 -c--a-w c:\windows\system32\dllcache\occache.dll
+ 2008-10-16 20:33:50 102,912 -c--a-w c:\windows\system32\dllcache\occache.dll
- 2008-08-26 08:27:01 44,544 -c--a-w c:\windows\system32\dllcache\pngfilt.dll
+ 2008-10-16 20:33:50 44,544 -c--a-w c:\windows\system32\dllcache\pngfilt.dll
+ 2008-04-14 03:21:53 7,680 -c--a-w c:\windows\system32\dllcache\pwsdata.dll
+ 2008-04-14 03:21:54 4,096 -c--a-w c:\windows\system32\dllcache\rpcref.dll
+ 2008-04-14 03:21:54 9,728 -c--a-w c:\windows\system32\dllcache\rwnh.dll
+ 2008-04-14 03:21:54 221,696 -c--a-w c:\windows\system32\dllcache\seo.dll
+ 2008-04-14 03:21:55 189,440 -c--a-w c:\windows\system32\dllcache\smtpadm.dll
+ 2008-04-14 03:21:55 10,752 -c--a-w c:\windows\system32\dllcache\smtpapi.dll
+ 2008-04-14 03:21:55 2,134,528 -c--a-w c:\windows\system32\dllcache\smtpsnap.dll
+ 2008-04-14 03:21:56 460,288 -c--a-w c:\windows\system32\dllcache\smtpsvc.dll
+ 2008-04-14 03:22:03 45,056 -c--a-w c:\windows\system32\dllcache\ssinc51.dll
+ 2008-04-14 03:22:03 46,592 -c--a-w c:\windows\system32\dllcache\sspifilt.dll
+ 2008-04-14 03:22:03 8,192 -c--a-w c:\windows\system32\dllcache\staxmem.dll
- 2008-04-14 03:22:03 246,814 -c--a-w c:\windows\system32\dllcache\strmdll.dll
+ 2008-10-03 10:04:44 247,326 -c--a-w c:\windows\system32\dllcache\strmdll.dll
+ 2008-04-14 03:22:03 46,592 -c--a-w c:\windows\system32\dllcache\svcext51.dll
+ 2008-04-14 03:22:04 33,792 -c--a-w c:\windows\system32\dllcache\tools.dll
+ 2008-04-14 03:22:04 103,936 -c--a-w c:\windows\system32\dllcache\uihelper.dll
- 2008-08-26 08:27:01 105,984 -c--a-w c:\windows\system32\dllcache\url.dll
+ 2008-10-16 20:33:50 105,984 -c--a-w c:\windows\system32\dllcache\url.dll
- 2008-08-26 08:27:02 1,159,680 -c--a-w c:\windows\system32\dllcache\urlmon.dll
+ 2008-10-16 20:33:50 1,160,192 -c--a-w c:\windows\system32\dllcache\urlmon.dll
+ 2008-04-14 03:22:04 366,080 -c--a-w c:\windows\system32\dllcache\w3svc.dll
+ 2008-04-14 03:22:04 77,312 -c--a-w c:\windows\system32\dllcache\wam51.dll
+ 2008-04-14 03:22:04 53,248 -c--a-w c:\windows\system32\dllcache\wamreg51.dll
- 2008-08-26 08:27:02 233,472 -c--a-w c:\windows\system32\dllcache\webcheck.dll
+ 2008-10-16 20:33:50 233,472 -c--a-w c:\windows\system32\dllcache\webcheck.dll
- 2008-08-26 08:27:02 826,368 -c--a-w c:\windows\system32\dllcache\wininet.dll
+ 2008-10-16 20:33:50 826,368 -c--a-w c:\windows\system32\dllcache\wininet.dll
- 2006-10-18 20:47:20 937,984 -c--a-w c:\windows\system32\dllcache\WMNetMgr.dll
+ 2008-06-18 04:03:08 938,496 -c--a-w c:\windows\system32\dllcache\WMNetmgr.dll
- 2006-10-18 20:47:22 2,450,944 -c--a-w c:\windows\system32\dllcache\wmvcore.dll
+ 2008-06-18 04:03:14 2,458,112 -c--a-w c:\windows\system32\dllcache\WMVCore.dll
+ 2008-11-26 17:15:35 26,944 ----a-w c:\windows\system32\drivers\aavmker4.sys
+ 2008-11-26 17:17:25 20,560 ----a-w c:\windows\system32\drivers\aswFsBlk.sys
+ 2008-11-26 17:18:25 93,296 ----a-w c:\windows\system32\drivers\aswmon.sys
+ 2008-11-26 17:18:18 94,032 ----a-w c:\windows\system32\drivers\aswmon2.sys
+ 2008-11-26 17:16:29 23,152 ----a-w c:\windows\system32\drivers\aswRdr.sys
+ 2008-11-26 17:17:36 111,184 ----a-w c:\windows\system32\drivers\aswSP.sys
+ 2008-11-26 17:16:38 50,864 ----a-w c:\windows\system32\drivers\aswTdi.sys
- 2008-08-26 08:26:56 347,136 ----a-w c:\windows\system32\dxtmsft.dll
+ 2008-10-16 20:33:48 347,136 ----a-w c:\windows\system32\dxtmsft.dll
- 2008-08-26 08:26:56 214,528 ----a-w c:\windows\system32\dxtrans.dll
+ 2008-10-16 20:33:48 214,528 ----a-w c:\windows\system32\dxtrans.dll
+ 2008-04-14 03:21:41 14,336 ----a-w c:\windows\system32\exstrace.dll
- 2008-08-26 08:26:56 133,120 ----a-w c:\windows\system32\extmgr.dll
+ 2008-10-16 20:33:48 133,120 ----a-w c:\windows\system32\extmgr.dll
- 2008-11-13 07:19:09 304,416 ----a-w c:\windows\system32\FNTCACHE.DAT
+ 2008-11-27 20:52:38 216,064 ----a-w c:\windows\system32\FNTCACHE.DAT
- 2008-08-26 08:26:56 63,488 ----a-w c:\windows\system32\icardie.dll
+ 2008-10-16 20:33:48 63,488 ----a-w c:\windows\system32\icardie.dll
- 2008-08-25 08:36:29 70,656 ----a-w c:\windows\system32\ie4uinit.exe
+ 2008-10-16 13:09:14 70,656 ----a-w c:\windows\system32\ie4uinit.exe
- 2008-08-26 08:26:56 153,088 ----a-w c:\windows\system32\ieakeng.dll
+ 2008-10-16 20:33:48 153,088 ----a-w c:\windows\system32\ieakeng.dll
- 2008-08-26 08:26:56 230,400 ----a-w c:\windows\system32\ieaksie.dll
+ 2008-10-16 20:33:48 230,400 ----a-w c:\windows\system32\ieaksie.dll
- 2008-08-23 05:54:51 161,792 ----a-w c:\windows\system32\ieakui.dll
+ 2008-10-15 07:04:53 161,792 ----a-w c:\windows\system32\ieakui.dll
- 2008-08-26 08:26:56 383,488 ----a-w c:\windows\system32\ieapfltr.dll
+ 2008-10-16 20:33:48 383,488 ----a-w c:\windows\system32\ieapfltr.dll
- 2008-08-26 08:26:57 384,512 ----a-w c:\windows\system32\iedkcs32.dll
+ 2008-10-16 20:33:48 384,512 ----a-w c:\windows\system32\iedkcs32.dll
- 2008-10-03 17:26:29 6,066,176 ----a-w c:\windows\system32\ieframe.dll
+ 2008-10-16 20:33:49 6,066,176 ----a-w c:\windows\system32\ieframe.dll
- 2008-08-26 08:26:58 44,544 ----a-w c:\windows\system32\iernonce.dll
+ 2008-10-16 20:33:49 44,544 ----a-w c:\windows\system32\iernonce.dll
- 2008-08-26 08:26:58 267,776 ----a-w c:\windows\system32\iertutil.dll
+ 2008-10-16 20:33:49 267,776 ----a-w c:\windows\system32\iertutil.dll
- 2008-08-25 08:38:00 13,824 ----a-w c:\windows\system32\ieudinit.exe
+ 2008-10-16 13:11:09 13,824 ----a-w c:\windows\system32\ieudinit.exe
+ 2008-04-14 03:21:43 68,608 ----a-w c:\windows\system32\iisext.dll
+ 2008-04-14 03:21:43 64,512 ----a-w c:\windows\system32\iismap.dll
+ 2008-04-14 03:21:43 133,632 ----a-w c:\windows\system32\iisRtl.dll
+ 2008-04-14 03:21:36 29,696 ----a-w c:\windows\system32\inetsrv\admexs.dll
+ 2008-04-14 03:21:36 109,056 ----a-w c:\windows\system32\inetsrv\AppConf.dll
+ 2008-04-14 03:21:37 330,752 ----a-w c:\windows\system32\inetsrv\aqueue.dll
+ 2008-04-14 03:21:37 372,736 ----a-w c:\windows\system32\inetsrv\asp.dll
+ 2008-04-14 03:21:38 46,592 ----a-w c:\windows\system32\inetsrv\coadmin.dll
+ 2008-04-14 03:21:38 24,064 ----a-w c:\windows\system32\inetsrv\compfilt.dll
+ 2008-04-14 03:22:17 42,496 ----a-w c:\windows\system32\inetsrv\davcdata.exe
+ 2008-04-14 03:21:42 32,256 ----a-w c:\windows\system32\inetsrv\gzip.dll
+ 2008-04-14 03:21:42 268,288 ----a-w c:\windows\system32\inetsrv\httpext.dll
+ 2008-04-14 03:21:42 8,192 ----a-w c:\windows\system32\inetsrv\httpmib.dll
+ 2008-04-14 03:21:42 61,440 ----a-w c:\windows\system32\inetsrv\httpodbc.dll
+ 2008-04-14 03:21:43 25,088 ----a-w c:\windows\system32\inetsrv\iisadmin.dll
+ 2008-04-14 03:21:43 7,168 ----a-w c:\windows\system32\inetsrv\iisfecnv.dll
+ 2008-04-14 03:21:43 145,408 ----a-w c:\windows\system32\inetsrv\iischema.dll
+ 2008-04-14 03:21:43 79,872 ----a-w c:\windows\system32\inetsrv\iislog.dll
+ 2008-04-14 03:22:26 31,232 ----a-w c:\windows\system32\inetsrv\iisrstas.exe
+ 2008-04-14 03:22:26 15,872 ----a-w c:\windows\system32\inetsrv\inetinfo.exe
+ 2008-04-14 03:21:43 834,048 ----a-w c:\windows\system32\inetsrv\inetmgr.dll
+ 2008-04-14 03:21:44 257,024 ----a-w c:\windows\system32\inetsrv\infocomm.dll
+ 2008-04-14 03:21:44 68,608 ----a-w c:\windows\system32\inetsrv\isatq.dll
+ 2008-04-14 03:21:44 27,136 ----a-w c:\windows\system32\inetsrv\iscomlog.dll
+ 2008-04-14 03:21:45 13,312 ----a-w c:\windows\system32\inetsrv\lonsint.dll
+ 2008-04-14 03:21:45 37,888 ----a-w c:\windows\system32\inetsrv\md5filt.dll
+ 2008-04-14 03:21:45 85,504 ----a-w c:\windows\system32\inetsrv\metadata.dll
+ 2008-04-14 03:21:51 44,544 ----a-w c:\windows\system32\inetsrv\nsepm.dll
+ 2008-04-14 03:21:53 7,680 ----a-w c:\windows\system32\inetsrv\pwsdata.dll
+ 2008-04-14 03:21:54 4,096 ----a-w c:\windows\system32\inetsrv\rpcref.dll
+ 2008-04-14 03:21:56 460,288 ----a-w c:\windows\system32\inetsrv\smtpsvc.dll
+ 2008-04-14 03:22:03 45,056 ----a-w c:\windows\system32\inetsrv\ssinc.dll
+ 2008-04-14 03:22:03 46,592 ----a-w c:\windows\system32\inetsrv\sspifilt.dll
+ 2008-04-14 03:22:03 46,592 ----a-w c:\windows\system32\inetsrv\svcext.dll
+ 2008-04-14 03:22:04 33,792 ----a-w c:\windows\system32\inetsrv\tools.dll
+ 2008-04-14 03:22:04 103,936 ----a-w c:\windows\system32\inetsrv\uihelper.dll
+ 2008-04-14 03:22:04 366,080 ----a-w c:\windows\system32\inetsrv\w3svc.dll
+ 2008-04-14 03:22:04 77,312 ----a-w c:\windows\system32\inetsrv\wam.dll
+ 2008-04-14 03:22:04 53,248 ----a-w c:\windows\system32\inetsrv\wamreg.dll
+ 2008-04-14 03:21:44 13,312 ----a-w c:\windows\system32\infoadmn.dll
- 2008-08-26 08:26:59 27,648 ----a-w c:\windows\system32\jsproxy.dll
+ 2008-10-16 20:33:49 27,648 ----a-w c:\windows\system32\jsproxy.dll
- 2006-10-18 19:03:58 100,864 ----a-w c:\windows\system32\logagent.exe
+ 2008-06-18 00:09:22 100,864 ----a-w c:\windows\system32\logagent.exe
- 2008-11-04 00:10:25 17,318,336 ----a-w c:\windows\system32\MRT.exe
+ 2008-12-09 23:24:37 17,593,280 ----a-w c:\windows\system32\MRT.exe
- 2008-08-26 08:26:59 459,264 ----a-w c:\windows\system32\msfeeds.dll
+ 2008-10-16 20:33:49 459,264 ----a-w c:\windows\system32\msfeeds.dll
- 2008-08-26 08:26:59 52,224 ----a-w c:\windows\system32\msfeedsbs.dll
+ 2008-10-16 20:33:49 52,224 ----a-w c:\windows\system32\msfeedsbs.dll
- 2008-08-27 09:27:02 3,593,216 ----a-w c:\windows\system32\mshtml.dll
+ 2008-10-17 01:03:50 3,593,216 ----a-w c:\windows\system32\mshtml.dll
- 2008-08-26 08:27:01 477,696 ----a-w c:\windows\system32\mshtmled.dll
+ 2008-10-16 20:33:50 477,696 ----a-w c:\windows\system32\mshtmled.dll
- 2008-08-26 08:27:01 193,024 ----a-w c:\windows\system32\msrating.dll
+ 2008-10-16 20:33:50 193,024 ----a-w c:\windows\system32\msrating.dll
- 2008-08-26 08:27:01 671,232 ----a-w c:\windows\system32\mstime.dll
+ 2008-10-16 20:33:50 671,232 ----a-w c:\windows\system32\mstime.dll
- 2008-08-26 08:27:01 102,912 ----a-w c:\windows\system32\occache.dll
+ 2008-10-16 20:33:50 102,912 ----a-w c:\windows\system32\occache.dll
- 2008-08-26 08:27:01 44,544 ----a-w c:\windows\system32\pngfilt.dll
+ 2008-10-16 20:33:50 44,544 ----a-w c:\windows\system32\pngfilt.dll
- 2008-11-26 13:28:42 230,092 ----a-w c:\windows\system32\Restore\rstrlog.dat
+ 2008-11-29 08:31:18 1,322,872 ----a-w c:\windows\system32\Restore\rstrlog.dat
- 2008-07-08 12:59:42 18,296 ------w c:\windows\system32\spmsg.dll
+ 2007-11-30 12:39:09 18,296 ------w c:\windows\system32\spmsg.dll
+ 2008-04-14 03:22:03 8,192 ----a-w c:\windows\system32\staxmem.dll
- 2008-04-14 03:22:50 60,416 ------w c:\windows\system32\tzchange.exe
+ 2008-10-23 10:06:59 62,976 ------w c:\windows\system32\tzchange.exe
- 2008-08-26 08:27:01 105,984 ----a-w c:\windows\system32\url.dll
+ 2008-10-16 20:33:50 105,984 ----a-w c:\windows\system32\url.dll
- 2008-08-26 08:27:02 1,159,680 ----a-w c:\windows\system32\urlmon.dll
+ 2008-10-16 20:33:50 1,160,192 ----a-w c:\windows\system32\urlmon.dll
- 2008-08-26 08:27:02 233,472 ----a-w c:\windows\system32\webcheck.dll
+ 2008-10-16 20:33:50 233,472 ----a-w c:\windows\system32\webcheck.dll
- 2006-10-18 20:47:20 937,984 ----a-w c:\windows\system32\wmnetmgr.dll
+ 2008-06-18 04:03:08 938,496 ----a-w c:\windows\system32\WMNetmgr.dll
- 2006-10-18 20:47:22 2,450,944 ----a-w c:\windows\system32\wmvcore.dll
+ 2008-06-18 04:03:14 2,458,112 ----a-w c:\windows\system32\WMVCore.dll
+ 2008-12-17 20:11:40 16,384 ----atw c:\windows\temp\Perflib_Perfdata_65c.dat
+ 2008-12-17 20:21:39 16,384 ----atw c:\windows\temp\Perflib_Perfdata_e94.dat
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2008-05-30 21718312]
"Uniblue RegistryBooster 2009"="c:\program files\Uniblue\RegistryBooster\RegistryBooster.exe" [2008-08-26 2019624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2004-12-22 98394]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2004-12-22 688218]
"Power_Gear"="c:\program files\ASUS\Power4 Gear\BatteryLife.exe" [2004-09-21 81920]
"HControl"="c:\windows\ATK0100\HControl.exe" [2005-05-12 102400]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2008-11-27 1261336]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-11-26 81000]
"SoundMan"="SOUNDMAN.EXE" [2005-04-15 c:\windows\soundman.exe]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
"Nokia.PCSync"="c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-03-27 1744896]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.3iv2"= 3ivxVfWCodec.dll
"VIDC.HFYU"= huffyuv.dll
"VIDC.VP31"= vp31vfw.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Authentication Packages REG_MULTI_SZ msv1_0 nwprovau

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"SMSystemAnalyzer"="c:\program files\iolo\System Mechanic 6\SMSystemAnalyzer.exe"
"swg"=c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SiSPower"=Rundll32.exe SiSPower.dll,ModeAgent
"RemoteControl"="c:\program files\ASUSTeK\ASUSDVD\PDVDServ.exe"
"PCSuiteTrayApplication"=c:\program files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
"InCD"=c:\program files\Ahead\InCD\InCD.exe
"HPDJ Taskbar Utility"=c:\windows\system32\spool\drivers\w32x86\3\hpztsb04.exe
"SNPSTD2"=c:\windows\vsnpstd2.exe
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
"NeroFilterCheck"=c:\windows\system32\NeroCheck.exe
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" -atboottime

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\ICQLite\\ICQLite.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\TRANSLAT\\WEBTRANS.EXE"=
"c:\\Program Files\\idefisk\\idefisk.exe"=
"c:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe"=
"c:\\Program Files\\ICQ6\\ICQ.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:*:Disabled:@xpsp2res.dll,-22009

R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\Drivers\avgrkx86.sys [2008-08-15 12936]
R0 stwlfbus;stwlfbus;c:\windows\system32\DRIVERS\stwlfbus.sys [2003-04-27 8704]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-12-02 111184]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\Drivers\avgldx86.sys [2008-08-15 98440]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\Drivers\avgtdix.sys [2008-08-15 90632]
R1 fwdrv;Firewall Driver;c:\windows\system32\drivers\fwdrv.sys [2007-04-26 302000]
R1 khips;Kerio HIPS Driver;c:\windows\system32\drivers\khips.sys [2007-04-26 72624]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2008-12-02 20560]
R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [2008-10-23 874776]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2008-08-15 231704]
R2 SPF4;Sunbelt Personal Firewall 4;"c:\program files\Sunbelt Software\Personal Firewall\kpf4ss.exe" [2007-04-26 1234480]
R3 HSFHWSIS;HSFHWSIS;c:\windows\system32\DRIVERS\HSFHWSIS.sys [2005-06-22 193280]
R3 PSched;Plánovač paketů technologie QoS;c:\windows\system32\DRIVERS\psched.sys [2004-08-03 69120]
R3 st3wolf;st3wolf;c:\windows\system32\DRIVERS\st3wolf.sys [2003-04-27 99360]
S0 lcrznmn;lcrznmn;c:\windows\system32\drivers\vnobr.sys []

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'

2008-12-12 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2008\OneClick.exe [2007-12-28 13:49]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: &ICQ Toolbar Search - c:\program files\ICQToolbar\toolbaru.dll/SEARCH.HTML
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: {AD742D62-31DD-48D5-B33D-582B7DA96C5D} = 84.244.64.2,212.158.128.2
FF - ProfilePath - c:\documents and settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\paemvetb.default\
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://www.atlas.cz/?from=icqhp
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... id=afex&q=
FF - plugin: c:\program files\K-Lite Codec Pack\real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\K-Lite Codec Pack\real\browser\plugins\nprpjplug.dll
.
.
------- Asociace souborů -------
.
JSEFile=NOTEPAD.EXE %1
VBEFile=NOTEPAD.EXE %1
VBSFile=NOTEPAD.EXE %1
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-17 21:15:31
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Ahead\InCD\InCDsrv.exe
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\progra~1\AVG\AVG8\avgam.exe
c:\progra~1\AVG\AVG8\avgnsx.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\progra~1\AVG\AVG8\avgrsx.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe
c:\windows\ATK0100\ATKOSD.exe
c:\program files\Skype\Plugin Manager\skypePM.exe
.
**************************************************************************
.
Celkový čas: 2008-12-17 21:33:06 - počítač byl restartován
ComboFix-quarantined-files.txt 2008-12-17 20:32:42
ComboFix2.txt 2008-11-28 10:27:51
ComboFix3.txt 2008-11-28 08:43:59
ComboFix4.txt 2008-11-27 21:59:59
ComboFix5.txt 2008-12-17 19:56:34

Před spuštěním: 7 021 555 712
Po spuštění: 7,076,093,952

478 --- E O F --- 2008-12-11 19:42:04

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod jaro3 » 17 pro 2008 22:25

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

File::
c:\windows\system32\drivers\avgtdix.sys
c:\windows\system32\drivers\avgldx86.sys
c:\progra~1\AVG\AVG8\avgam.exe
c:\progra~1\AVG\AVG8\avgnsx.exe
c:\progra~1\AVG\AVG8\avgrsx.exe
C:\avg-free-edition.exe
c:\progra~1\AVG\AVG8\avgtray.exe
c:\progra~1\AVG\AVG8\avgwdsvc.exe
c:\progra~1\AVG\AVG8\avgemc.exe

Folder::
c:\documents and settings\All Users\Data aplikací\avg8
c:\Program Files\AVG

Driver::
avgrkx86
avgldx86
avgtdix

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVG8_TRAY"=-
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=-

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\AVG\\AVG8\\avgemc.exe"=-
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=-
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=-

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

charalambidis stanislav
Level 1.5
Level 1.5
Příspěvky: 113
Registrován: prosinec 06
Bydliště: zlaté hory
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu - pomalé PC

Příspěvekod charalambidis stanislav » 18 pro 2008 16:59

ComboFix 08-12-16.03 - Uživatel 2008-12-18 16:04:11.6 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.1.1029.18.383.73 [GMT 1:00]
Spuštěný z: c:\documents and settings\Uživatel\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Uživatel\Plocha\CFScript.txt
* Vytvořen nový Bod Obnovení

FILE ::
C:\avg-free-edition.exe
c:\progra~1\AVG\AVG8\avgam.exe
c:\progra~1\AVG\AVG8\avgemc.exe
c:\progra~1\AVG\AVG8\avgnsx.exe
c:\progra~1\AVG\AVG8\avgrsx.exe
c:\progra~1\AVG\AVG8\avgtray.exe
c:\progra~1\AVG\AVG8\avgwdsvc.exe
c:\windows\system32\drivers\avgldx86.sys
c:\windows\system32\drivers\avgtdix.sys
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\avg-free-edition.exe
c:\documents and settings\All Users\Data aplikací\avg8
c:\documents and settings\All Users\Data aplikací\avg8\AvgAm\avgam.lck
c:\documents and settings\All Users\Data aplikací\avg8\Cfg\krnl.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Cfg\mail.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Cfg\scan.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Cfg\sched.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Cfg\update.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Cfg\user.cfg
c:\documents and settings\All Users\Data aplikací\avg8\emc\Log\emc.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\amlog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgam.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgam.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcfg.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcfg.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.1
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.10
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.2
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.3
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.4
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.5
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.6
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.7
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.8
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.9
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgcore.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avglng.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avglng.log.1
c:\documents and settings\All Users\Data aplikací\avg8\Log\avglng.log.2
c:\documents and settings\All Users\Data aplikací\avg8\Log\avglng.log.3
c:\documents and settings\All Users\Data aplikací\avg8\Log\avglng.log.4
c:\documents and settings\All Users\Data aplikací\avg8\Log\avglng.log.5
c:\documents and settings\All Users\Data aplikací\avg8\Log\avglng.log.6
c:\documents and settings\All Users\Data aplikací\avg8\Log\avglng.log.7
c:\documents and settings\All Users\Data aplikací\avg8\Log\avglng.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.1
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.10
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.2
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.3
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.4
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.5
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.6
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.7
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.8
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.9
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgns.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.1
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.10
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.2
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.3
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.4
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.5
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.6
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.7
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.8
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.9
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgrs.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgscan.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgscan.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.1
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.10
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.2
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.3
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.4
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.5
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.6
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.7
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.8
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.9
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsched.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsrm.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgsrm.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgui.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgui.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avguilog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgupd.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgupd.log.1
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgupd.log.2
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgupd.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwd.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwd.log.1
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwd.log.2
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwd.log.3
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwd.log.4
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwd.log.5
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwd.log.6
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwd.log.7
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwd.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwdsvc.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwdsvc.log.1
c:\documents and settings\All Users\Data aplikací\avg8\Log\avgwdsvc.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\avildr.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\cfglog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\commonpriv.log
c:\documents and settings\All Users\Data aplikací\avg8\Log\commonpriv.log.lock
c:\documents and settings\All Users\Data aplikací\avg8\Log\corelog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\history.xml
c:\documents and settings\All Users\Data aplikací\avg8\Log\lnglog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\nslog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\privlog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\publog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\rslog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\scanlog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\schedlog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\srmlog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\updlog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\vaultlog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\wdlog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Log\wdsvclog.cfg
c:\documents and settings\All Users\Data aplikací\avg8\Lsdb\cf.dat
c:\documents and settings\All Users\Data aplikací\avg8\Lsdb\ph.dat
c:\documents and settings\All Users\Data aplikací\avg8\Lsdb\Prev\prvcache.dat
c:\documents and settings\All Users\Data aplikací\avg8\Lsdb\Prev\prvglbl.dat
c:\documents and settings\All Users\Data aplikací\avg8\Lsdb\sb.dat
c:\documents and settings\All Users\Data aplikací\avg8\Lsdb\sb.dat.xcd
c:\documents and settings\All Users\Data aplikací\avg8\Lsdb\sb2.dat
c:\documents and settings\All Users\Data aplikací\avg8\Lsdb\sc.dat
c:\documents and settings\All Users\Data aplikací\avg8\Lsdb\sc.dat.xcd
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000001.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000005.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000006.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000007.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000008.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000009.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000010.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000011.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000012.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000013.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000014.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000015.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000016.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000017.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000018.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000019.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000020.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000021.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000022.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000023.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000024.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000025.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000026.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000027.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000028.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000029.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000030.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000031.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000032.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000033.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000034.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000035.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000036.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000037.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000038.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000039.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000040.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000041.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000042.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000043.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000044.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000045.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000046.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000047.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000048.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000049.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000050.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000051.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000052.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000053.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000054.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000055.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000056.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000057.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000058.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000059.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000060.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000061.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000062.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000063.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000064.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000065.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000066.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000067.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000068.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000069.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000070.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000071.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000072.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000073.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000074.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000075.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000076.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000077.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000078.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000079.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\I_00000080.log
c:\documents and settings\All Users\Data aplikací\avg8\scanlogs\srm.idx
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avg7api.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avg8us.chm
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avg8us.lng
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgabout.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgam.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgameh.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgapix.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgar8us.chm
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgbat.bav
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgcfgx.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgcmgr.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgcorex.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgdg8us.chm
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgdiag.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgdiag.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgemc.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgfrw.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avginet.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgiproxy.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgldx86.sys
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avglngx.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgmail.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgnsx.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgoff2k.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgscanx.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgsched.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgsrmx.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgssff.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgssie.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgtdix.sys
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgtray.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgui.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avguiadv.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgupd.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgupd.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgvvx.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgwd.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgwdsvc.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgwebui.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\avgxpl.dll
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\contacts_us.html
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\dfncfg.dat
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\incavi.avm
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\microavi.avg
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\miniavi.avg
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\PendingConnection.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\sb.dat
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\sb.dat.xcd
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\sb2.dat
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\sc.dat
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\sc.dat.xcd
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\searchshield.jar
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\setup.dat
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\setup.exe
c:\documents and settings\All Users\Data aplikací\avg8\update\backup\setupus.lns
c:\documents and settings\All Users\Data aplikací\avg8\update\download\avginfoavi.ctf
c:\documents and settings\All Users\Data aplikací\avg8\update\download\avginfowin.ctf
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1395u1389li.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1396u13891g.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1397u138922.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1398u138970.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1399u1389f6.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1400u1389zx.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1401u13899u.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1402u13898m.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1403u138972.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1404u1389hz.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1405u1389ub.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1406u13899a.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1407u138979.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7avi1408u1389cn.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1797u1795lj.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1798u17971g.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1800u179824.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1801u1800pz.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1802u180171.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1803u1802uo.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1804u180399.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1805u18046.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1806u1805e9.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1807u180650.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1809u18075t.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1810u1809f7.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1811u181092.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1812u1811ru.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1813u1812di.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1815u1813hv.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1816u1815zx.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1818u18163h.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1819u1818si.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1820u18196a.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1822u1820jv.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1823u18223b.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1824u1823q2.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1825u18248n.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1826u1825tx.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1827u18267h.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1829u182774.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1831u1829il.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1832u18312n.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1833u1832i0.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1834u1833ia.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1835u1834mc.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1837u1835e6.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1841u1835m7.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1842u18411o.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1843u1842ok.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1844u18439b.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1845u1844tb.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1846u18459x.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1847u1846am.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1848u18477a.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1849u18485j.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1850u1849iu.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1851u185098.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1852u1851oq.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1853u1852co.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1854u1853v0.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\u7iavi1855u1854jj.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\w8fc23r2s6.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\w8fc32q1.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\w8setup200r199ro.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\w8ui200r195ro.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\x8xplsb_36d35us.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\x8xplsb_37d36f0.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\x8xplsb2_41cm.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\x8xplsb2_42az.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\x8xplsc_50d49cm.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\x8xplsc_51d50z1.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\x8xplsc_52d51az.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\x8xplsc_53d52f0.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\download\x8xplsc_54d53ue.bin
c:\documents and settings\All Users\Data aplikací\avg8\update\prepare\sb.dat.prepare
c:\documents and settings\All Users\Data aplikací\avg8\update\prepare\sc.dat.prepare
c:\progra~1\AVG\AVG8\avgam.exe
c:\progra~1\AVG\AVG8\avgemc.exe
c:\progra~1\AVG\AVG8\avgnsx.exe
c:\progra~1\AVG\AVG8\avgrsx.exe
c:\progra~1\AVG\AVG8\avgtray.exe
c:\progra~1\AVG\AVG8\avgwdsvc.exe
c:\program files\AVG
c:\program files\AVG\AVG8\avg.snu
c:\program files\AVG\AVG8\avg7api.dll
c:\program files\AVG\AVG8\avg8us.chm
c:\program files\AVG\AVG8\avg8us.lng
c:\program files\AVG\AVG8\avgabout.dll
c:\program files\AVG\AVG8\avgam.exe
c:\program files\AVG\AVG8\avgameh.dll
c:\program files\AVG\AVG8\avgapix.dll
c:\program files\AVG\AVG8\avgar8us.chm
c:\program files\AVG\AVG8\avgbat.bav
c:\program files\AVG\AVG8\avgcfgex.exe
c:\program files\AVG\AVG8\avgcfgx.dll
c:\program files\AVG\AVG8\avgcmgr.exe
c:\program files\AVG\AVG8\avgcorex.dll
c:\program files\AVG\AVG8\avgcrlpx.dll
c:\program files\AVG\AVG8\avgdg8us.chm
c:\program files\AVG\AVG8\avgdiag.dll
c:\program files\AVG\AVG8\avgdiag.exe
c:\program files\AVG\AVG8\avgdumpx.exe
c:\program files\AVG\AVG8\avgemc.exe
c:\program files\AVG\AVG8\avgfrw.exe
c:\program files\AVG\AVG8\avgchk.exe
c:\program files\AVG\AVG8\avgchk.exe0
c:\program files\AVG\AVG8\avginet.dll
c:\program files\AVG\AVG8\avgiproxy.exe
c:\program files\AVG\AVG8\avglngx.dll
c:\program files\AVG\AVG8\avglogx.dll
c:\program files\AVG\AVG8\avgmail.dll
c:\program files\AVG\AVG8\avgmvflx.dll
c:\program files\AVG\AVG8\avgmwdef_us.mht
c:\program files\AVG\AVG8\avgnsx.exe
c:\program files\AVG\AVG8\avgoff2k.dll
c:\program files\AVG\AVG8\avgpp.dll
c:\program files\AVG\AVG8\avgresf.dll
c:\program files\AVG\AVG8\avgrktx.dll
c:\program files\AVG\AVG8\avgrsx.exe
c:\program files\AVG\AVG8\avgscanx.dll
c:\program files\AVG\AVG8\avgscanx.exe
c:\program files\AVG\AVG8\avgse.dll
c:\program files\AVG\AVG8\avgsched.dll
c:\program files\AVG\AVG8\avgsrmax.exe
c:\program files\AVG\AVG8\avgsrmx.dll
c:\program files\AVG\AVG8\avgssie.dll
c:\program files\AVG\AVG8\avgtray.exe
c:\program files\AVG\AVG8\avgui.exe
c:\program files\AVG\AVG8\avguiadv.dll
c:\program files\AVG\AVG8\avguires.dll
c:\program files\AVG\AVG8\avgupd.dll
c:\program files\AVG\AVG8\avgupd.exe
c:\program files\AVG\AVG8\avgvvx.dll
c:\program files\AVG\AVG8\avgwd.dll
c:\program files\AVG\AVG8\avgwdsvc.exe
c:\program files\AVG\AVG8\avgwdwsc.dll
c:\program files\AVG\AVG8\avgwebui.dll
c:\program files\AVG\AVG8\avgxpl.dll
c:\program files\AVG\AVG8\cfg\mail.cfg
c:\program files\AVG\AVG8\contacts_us.html
c:\program files\AVG\AVG8\dbghelp.dll
c:\program files\AVG\AVG8\dfncfg.dat
c:\program files\AVG\AVG8\Firefox\Components\avgssff.dll
c:\program files\AVG\AVG8\Firefox\Components\ISearchShield.xpt
c:\program files\AVG\AVG8\Firefox\chrome.manifest
c:\program files\AVG\AVG8\Firefox\Chrome\searchshield.jar
c:\program files\AVG\AVG8\Firefox\install.rdf
c:\program files\AVG\AVG8\fixcfg.exe
c:\program files\AVG\AVG8\fixfp.exe
c:\program files\AVG\AVG8\Icons\background_middle_gray.gif
c:\program files\AVG\AVG8\Icons\background_middle_green.gif
c:\program files\AVG\AVG8\Icons\background_middle_orange.gif
c:\program files\AVG\AVG8\Icons\background_middle_red.gif
c:\program files\AVG\AVG8\Icons\background_middle_yellow.gif
c:\program files\AVG\AVG8\Icons\background_top_gray.gif
c:\program files\AVG\AVG8\Icons\background_top_green.gif
c:\program files\AVG\AVG8\Icons\background_top_orange.gif
c:\program files\AVG\AVG8\Icons\background_top_red.gif
c:\program files\AVG\AVG8\Icons\background_top_yellow.gif
c:\program files\AVG\AVG8\Icons\block-doc.gif
c:\program files\AVG\AVG8\Icons\blocked.gif
c:\program files\AVG\AVG8\Icons\border_bottom_gray.gif
c:\program files\AVG\AVG8\Icons\border_bottom_green.gif
c:\program files\AVG\AVG8\Icons\border_bottom_orange.gif
c:\program files\AVG\AVG8\Icons\border_bottom_red.gif
c:\program files\AVG\AVG8\Icons\border_bottom_yellow.gif
c:\program files\AVG\AVG8\Icons\border_top_gray.gif
c:\program files\AVG\AVG8\Icons\border_top_green.gif
c:\program files\AVG\AVG8\Icons\border_top_orange.gif
c:\program files\AVG\AVG8\Icons\border_top_red.gif
c:\program files\AVG\AVG8\Icons\border_top_yellow.gif
c:\program files\AVG\AVG8\Icons\box_bottom_red.gif
c:\program files\AVG\AVG8\Icons\box_top_red.gif
c:\program files\AVG\AVG8\Icons\caution.gif
c:\program files\AVG\AVG8\Icons\click_here_gray.gif
c:\program files\AVG\AVG8\Icons\click_here_green.gif
c:\program files\AVG\AVG8\Icons\click_here_orange.gif
c:\program files\AVG\AVG8\Icons\click_here_red.gif
c:\program files\AVG\AVG8\Icons\click_here_yellow.gif
c:\program files\AVG\AVG8\Icons\clock.gif
c:\program files\AVG\AVG8\Icons\close.gif
c:\program files\AVG\AVG8\Icons\icons_blocked.gif
c:\program files\AVG\AVG8\Icons\icons_caution.gif
c:\program files\AVG\AVG8\Icons\icons_close.gif
c:\program files\AVG\AVG8\Icons\icons_safe.gif
c:\program files\AVG\AVG8\Icons\icons_unknown.gif
c:\program files\AVG\AVG8\Icons\icons_warning.gif
c:\program files\AVG\AVG8\Icons\LS_Logo_Results.gif
c:\program files\AVG\AVG8\Icons\safe.gif
c:\program files\AVG\AVG8\Icons\unknown.gif
c:\program files\AVG\AVG8\Icons\warning.gif
c:\program files\AVG\AVG8\imsdk32.dll
c:\program files\AVG\AVG8\libsasl.dll
c:\program files\AVG\AVG8\license_us.txt
c:\program files\AVG\AVG8\lua51132.dll
c:\program files\AVG\AVG8\Notification\cmp2008_App_Free_8_fr.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Free_8_it.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Free_8_nl.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Free_8_pt.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Free_8_sp.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Free_8_us.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Paid_8_fr.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Paid_8_it.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Paid_8_nl.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Paid_8_pt.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Paid_8_sp.html
c:\program files\AVG\AVG8\Notification\cmp2008_App_Paid_8_us.html
c:\program files\AVG\AVG8\Notification\icon_bulb.gif
c:\program files\AVG\AVG8\Notification\logo_avg8.gif
c:\program files\AVG\AVG8\Notification\style.css
c:\program files\AVG\AVG8\saslcrammd5.dll
c:\program files\AVG\AVG8\sasldigestmd5.dll
c:\program files\AVG\AVG8\sasllogin.dll
c:\program files\AVG\AVG8\saslplain.dll
c:\program files\AVG\AVG8\Scripts\class.bin
c:\program files\AVG\AVG8\Scripts\Dictionary\english.bin
c:\program files\AVG\AVG8\Scripts\Dictionary\french.bin
c:\program files\AVG\AVG8\Scripts\Dictionary\portuguese.bin
c:\program files\AVG\AVG8\Scripts\Dictionary\spanish.bin
c:\program files\AVG\AVG8\Scripts\Dictionary\swedish.bin
c:\program files\AVG\AVG8\Scripts\IM\Kernel.bin
c:\program files\AVG\AVG8\Scripts\IM\MSN\Account.bin
c:\program files\AVG\AVG8\Scripts\IM\MSN\NotificationConnection.bin
c:\program files\AVG\AVG8\Scripts\IM\MSN\NotificationConnection13.bin
c:\program files\AVG\AVG8\Scripts\IM\MSN\PendingConnection.bin
c:\program files\AVG\AVG8\Scripts\IM\MSN\SwitchBoardConnection.bin
c:\program files\AVG\AVG8\Scripts\IM\MSN\SwitchBoardConnection13.bin
c:\program files\AVG\AVG8\Scripts\IM\Protocol.bin
c:\program files\AVG\AVG8\Scripts\IM\SocketQ.bin
c:\program files\AVG\AVG8\Scripts\IM\utility.bin
c:\program files\AVG\AVG8\Scripts\imcontrol.bin
c:\program files\AVG\AVG8\Scripts\Logging\console.bin
c:\program files\AVG\AVG8\Scripts\Logging\file.bin
c:\program files\AVG\AVG8\Scripts\Logging\localized.bin
c:\program files\AVG\AVG8\Scripts\Logging\logging.bin
c:\program files\AVG\AVG8\Scripts\Logging\null.bin
c:\program files\AVG\AVG8\Scripts\soaptest.bin
c:\program files\AVG\AVG8\setup.cfg
c:\program files\AVG\AVG8\setup.dat
c:\program files\AVG\AVG8\setup.exe
c:\program files\AVG\AVG8\setupus.lns
c:\program files\AVG\AVG8\updatecomps.cfg
c:\windows\system32\drivers\avgldx86.sys
c:\windows\system32\drivers\avgtdix.sys

.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_AVGLDX86
-------\Legacy_AVGRKX86
-------\Legacy_AVGTDIX
-------\Service_AvgLdx86
-------\Service_AvgRkx86
-------\Service_AvgTdiX


((((((((((((((((((((((((( Soubory vytvořené od 2008-11-18 do 2008-12-18 )))))))))))))))))))))))))))))))
.

2008-12-16 20:25 . 2008-12-16 20:25 <DIR> d-------- c:\program files\Uniblue
2008-12-16 20:25 . 2008-12-16 20:25 <DIR> d-------- c:\documents and settings\Uživatel\Data aplikací\Uniblue
2008-12-14 20:58 . 2008-12-14 20:59 <DIR> d-------- C:\rsit
2008-12-14 20:39 . 2008-12-14 20:39 <DIR> d-------- c:\documents and settings\Uživatel\Data aplikací\KC Softwares
2008-11-29 17:43 . 2008-12-16 20:25 <DIR> d--h-c--- c:\documents and settings\All Users\Data aplikací\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}
2008-11-26 09:02 . 2008-11-26 09:02 578,560 --a--c--- c:\windows\system32\dllcache\user32.dll
2008-11-26 08:59 . 2008-11-26 08:59 <DIR> d-------- c:\windows\ERUNT
2008-11-25 12:42 . 2008-11-25 12:42 <DIR> d-------- c:\documents and settings\Uživatel\Data aplikací\Malwarebytes
2008-11-25 12:41 . 2008-12-16 21:05 <DIR> d-------- c:\program files\Malwarebytes' Anti-Malware
2008-11-25 12:41 . 2008-11-25 12:41 <DIR> d-------- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2008-11-25 12:41 . 2008-12-03 19:52 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2008-11-25 12:41 . 2008-12-03 19:52 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2008-11-20 08:55 . 2008-11-26 08:57 234 --a------ c:\windows\system32\drivers\fwdrv.err
2008-11-18 22:25 . 2008-11-18 22:25 127 --a------ c:\windows\system32\MRT.INI

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-18 15:14 --------- d-----w c:\documents and settings\Uživatel\Data aplikací\Skype
2008-12-18 15:04 --------- d-----w c:\documents and settings\Uživatel\Data aplikací\skypePM
2008-12-18 09:28 --------- d-----w c:\documents and settings\Uživatel\Data aplikací\OpenOffice.org2
2008-11-27 20:30 --------- d-----w c:\program files\Common Files\Wise Installation Wizard
2008-11-12 16:44 --------- d-----w c:\program files\Zoner
2008-11-08 15:25 --------- d-----w c:\program files\TuneUp Utilities 2008
2008-11-08 15:20 306,432 ----a-w c:\windows\system32\TuneUpDefragService.exe
2008-11-08 15:20 --------- d-----w c:\documents and settings\All Users\Data aplikací\TuneUp Software
2008-11-08 15:03 --------- d-----w c:\program files\Lavasoft RegHance
2008-11-08 14:52 --------- d-----w c:\program files\Lavasoft
2008-11-08 14:52 --------- d-----w c:\documents and settings\Uživatel\Data aplikací\Lavasoft
2008-10-24 11:21 455,296 ----a-w c:\windows\system32\drivers\mrxsmb.sys
2008-10-23 12:42 286,720 ----a-w c:\windows\system32\gdi32.dll
2008-10-20 16:58 --------- d-----w c:\program files\Scorpions WinCheater
2008-10-20 16:54 --------- d-----w c:\program files\Changes
2008-10-16 20:33 826,368 ----a-w c:\windows\system32\wininet.dll
2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
2008-10-03 10:04 247,326 ----a-w c:\windows\system32\strmdll.dll
2008-04-02 13:56 32 ----a-w c:\documents and settings\All Users\Data aplikací\ezsid.dat
.

((((((((((((((((((((((((((((( snapshot_2008-12-17_21.28.42.76 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-10-17 01:03:50 3,593,216 -c----w c:\windows\ie7updates\KB960714-IE7\mshtml.dll
+ 2007-03-06 01:07:37 215,776 -c----w c:\windows\ie7updates\KB960714-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:08:45 379,616 -c----w c:\windows\ie7updates\KB960714-IE7\spuninst\updspapi.dll
- 2008-10-17 01:03:50 3,593,216 -c--a-w c:\windows\system32\dllcache\mshtml.dll
+ 2008-12-13 06:39:09 3,593,216 -c--a-w c:\windows\system32\dllcache\mshtml.dll
- 2008-10-17 01:03:50 3,593,216 ----a-w c:\windows\system32\mshtml.dll
+ 2008-12-13 06:39:09 3,593,216 ----a-w c:\windows\system32\mshtml.dll
+ 2008-12-18 15:28:29 16,384 ----atw c:\windows\temp\Perflib_Perfdata_650.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2008-05-30 21718312]
"Uniblue RegistryBooster 2009"="c:\program files\Uniblue\RegistryBooster\RegistryBooster.exe" [2008-08-26 2019624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2004-12-22 98394]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2004-12-22 688218]
"Power_Gear"="c:\program files\ASUS\Power4 Gear\BatteryLife.exe" [2004-09-21 81920]
"HControl"="c:\windows\ATK0100\HControl.exe" [2005-05-12 102400]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-11-26 81000]
"SoundMan"="SOUNDMAN.EXE" [2005-04-15 c:\windows\soundman.exe]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
"Nokia.PCSync"="c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-03-27 1744896]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.3iv2"= 3ivxVfWCodec.dll
"VIDC.HFYU"= huffyuv.dll
"VIDC.VP31"= vp31vfw.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Authentication Packages REG_MULTI_SZ msv1_0 nwprovau

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"SMSystemAnalyzer"="c:\program files\iolo\System Mechanic 6\SMSystemAnalyzer.exe"
"swg"=c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SiSPower"=Rundll32.exe SiSPower.dll,ModeAgent
"RemoteControl"="c:\program files\ASUSTeK\ASUSDVD\PDVDServ.exe"
"PCSuiteTrayApplication"=c:\program files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
"InCD"=c:\program files\Ahead\InCD\InCD.exe
"HPDJ Taskbar Utility"=c:\windows\system32\spool\drivers\w32x86\3\hpztsb04.exe
"SNPSTD2"=c:\windows\vsnpstd2.exe
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
"NeroFilterCheck"=c:\windows\system32\NeroCheck.exe
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" -atboottime

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\ICQLite\\ICQLite.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\TRANSLAT\\WEBTRANS.EXE"=
"c:\\Program Files\\idefisk\\idefisk.exe"=
"c:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe"=
"c:\\Program Files\\ICQ6\\ICQ.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:*:Disabled:@xpsp2res.dll,-22009

R0 stwlfbus;stwlfbus;c:\windows\system32\DRIVERS\stwlfbus.sys [2003-04-27 8704]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-12-02 111184]
R1 fwdrv;Firewall Driver;c:\windows\system32\drivers\fwdrv.sys [2007-04-26 302000]
R1 khips;Kerio HIPS Driver;c:\windows\system32\drivers\khips.sys [2007-04-26 72624]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2008-12-02 20560]
R2 SPF4;Sunbelt Personal Firewall 4;"c:\program files\Sunbelt Software\Personal Firewall\kpf4ss.exe" [2007-04-26 1234480]
R3 HSFHWSIS;HSFHWSIS;c:\windows\system32\DRIVERS\HSFHWSIS.sys [2005-06-22 193280]
R3 PSched;Plánovač paketů technologie QoS;c:\windows\system32\DRIVERS\psched.sys [2004-08-03 69120]
R3 st3wolf;st3wolf;c:\windows\system32\DRIVERS\st3wolf.sys [2003-04-27 99360]
S0 lcrznmn;lcrznmn;c:\windows\system32\drivers\vnobr.sys []
S2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe []
S2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe []

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'

2008-12-12 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2008\OneClick.exe [2007-12-28 13:49]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: &ICQ Toolbar Search - c:\program files\ICQToolbar\toolbaru.dll/SEARCH.HTML
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: {AD742D62-31DD-48D5-B33D-582B7DA96C5D} = 84.244.64.2,212.158.128.2
FF - ProfilePath - c:\documents and settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\paemvetb.default\
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://www.atlas.cz/?from=icqhp
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... id=afex&q=
FF - plugin: c:\program files\K-Lite Codec Pack\real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\K-Lite Codec Pack\real\browser\plugins\nprpjplug.dll
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-18 16:29:12
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Ahead\InCD\InCDsrv.exe
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe
c:\windows\ATK0100\ATKOSD.exe
c:\program files\Skype\Plugin Manager\skypePM.exe
.
**************************************************************************
.
Celkový čas: 2008-12-18 16:44:16 - počítač byl restartován
ComboFix-quarantined-files.txt 2008-12-18 15:43:44
ComboFix2.txt 2008-12-17 20:33:17
ComboFix3.txt 2008-11-28 10:27:51
ComboFix4.txt 2008-11-28 08:43:59
ComboFix5.txt 2008-12-18 15:00:31

Před spuštěním: 7 006 937 088
Po spuštění: 6,889,463,808

706 --- E O F --- 2008-12-18 07:23:20



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:53:18, on 18.12.2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe
C:\Program Files\Skype\Plugin Manager\SkypePM.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Uživatel\Plocha\antiviráky\Hijaski\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{AD742D62-31DD-48D5-B33D-582B7DA96C5D}: NameServer = 84.244.64.2,212.158.128.2
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (file missing)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - Unknown owner - C:\PROGRA~1\AVG\AVG8\avgemc.exe (file missing)
O23 - Service: AVG8 WatchDog (avg8wd) - Unknown owner - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: InCD Helper (read only) (InCDsrvR) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: O&O Defrag 2000 (OOD2000) - O&O Software GmbH - C:\WINDOWS\system32\OOD2000.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

--
End of file - 7739 bytes


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: DotNetDotCom.org [Bot] a 30 hostů