Log z ComboFixu:
ComboFix 09-08-04.03 - fdsgssdfgsd 05.08.2009 17:10.4.2 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.1022.739 [GMT 2:00]
Spuštěný z: c:\documents and settings\fdsgssdfgsd\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\fdsgssdfgsd\Plocha\CFScript.txt
AV: AntiVir Desktop *On-access scanning disabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
FILE ::
"c:\documents and settings\Administrator\Plocha\ReNgIx\Plocha\JAVAAAAA\HRY\Diablo 176x220.jar"
"c:\program files\eRightSoft\SUPER\x264.exe"
"c:\windows\meta4.exe"
"c:\windows\MOTA113.exe"
"c:\windows\SET3.tmp"
"c:\windows\SET4.tmp"
"c:\windows\SET8.tmp"
"c:\windows\system32\imon1.dat"
"c:\windows\system32\x.264.exe"
"c:\windows\Tasks\SA.DAT"
"c:\windows\x2.64.exe"
"d:\auto_cad\Inventor_12_2008_CZ\Support\sqlexpress\autorun.inf"
"d:\potřebné\plneverze\PCBooster4.exe"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Administrator\Plocha\ReNgIx\Plocha\JAVAAAAA\HRY\Diablo 176x220.jar
c:\documents and settings\All Users\Data aplikací\ESET
c:\documents and settings\All Users\Data aplikací\ESET\ESET NOD32 Antivirus\EpfwUser.dat
c:\documents and settings\All Users\Data aplikací\ESET\ESET NOD32 Antivirus\Charon\FNDD8.NFI
c:\documents and settings\All Users\Data aplikací\McAfee.com
c:\documents and settings\All Users\Data aplikací\McAfee.com\Agent\Cache\McSubDB.Bak
c:\documents and settings\All Users\Data aplikací\McAfee.com\Agent\mcifolog.log
c:\documents and settings\All Users\Data aplikací\McAfee.com\Agent\mcini.ini
c:\documents and settings\All Users\Data aplikací\McAfee.com\Agent\McSubDB.Dat
c:\program files\eRightSoft\SUPER\x264.exe
c:\program files\Webteh
c:\program files\Webteh\BSplayer\bplay.exe
c:\program files\Webteh\BSplayer\bspfilters.sam
c:\program files\Webteh\BSplayer\bsplay.exe
c:\program files\Webteh\BSplayer\bsplayer.exe
c:\program files\Webteh\BSplayer\bsplayer.exe.manifest
c:\program files\Webteh\BSplayer\BSplayer.ReNgIx.xml
c:\program files\Webteh\BSplayer\bsplist.bsl
c:\program files\Webteh\BSplayer\bsrendv2.dll
c:\program files\Webteh\BSplayer\doc\cmdline.txt
c:\program files\Webteh\BSplayer\doc\ini_files.html
c:\program files\Webteh\BSplayer\changes.txt
c:\program files\Webteh\BSplayer\lang\Česky.lng
c:\program files\Webteh\BSplayer\lang\Arabic.lng
c:\program files\Webteh\BSplayer\lang\Arabic2.lng
c:\program files\Webteh\BSplayer\lang\Belarussian.lng
c:\program files\Webteh\BSplayer\lang\Bosanski.lng
c:\program files\Webteh\BSplayer\lang\Brazilian_Portuguese.lng
c:\program files\Webteh\BSplayer\lang\Brezhoneg.lng
c:\program files\Webteh\BSplayer\lang\Bulgarian.lng
c:\program files\Webteh\BSplayer\lang\Catalŕ.lng
c:\program files\Webteh\BSplayer\lang\Danish.lng
c:\program files\Webteh\BSplayer\lang\Deutsch.lng
c:\program files\Webteh\BSplayer\lang\Eesti.lng
c:\program files\Webteh\BSplayer\lang\English.lng
c:\program files\Webteh\BSplayer\lang\Esperanto.lng
c:\program files\Webteh\BSplayer\lang\Euskera.lng
c:\program files\Webteh\BSplayer\lang\Finnish.lng
c:\program files\Webteh\BSplayer\lang\Français.lng
c:\program files\Webteh\BSplayer\lang\Galego.lng
c:\program files\Webteh\BSplayer\lang\Greek.lng
c:\program files\Webteh\BSplayer\lang\Hebrew.lng
c:\program files\Webteh\BSplayer\lang\Hebrew2.lng
c:\program files\Webteh\BSplayer\lang\Hrvatski.lng
c:\program files\Webteh\BSplayer\lang\Italiano.lng
c:\program files\Webteh\BSplayer\lang\lang_changes.txt
c:\program files\Webteh\BSplayer\lang\Latvian.lng
c:\program files\Webteh\BSplayer\lang\Lithuanian.lng
c:\program files\Webteh\BSplayer\lang\magyar.lng
c:\program files\Webteh\BSplayer\lang\Makedonski.lng
c:\program files\Webteh\BSplayer\lang\Nederlands.lng
c:\program files\Webteh\BSplayer\lang\Norsk.lng
c:\program files\Webteh\BSplayer\lang\Polski.lng
c:\program files\Webteh\BSplayer\lang\Portugues.lng
c:\program files\Webteh\BSplayer\lang\Romanian.lng
c:\program files\Webteh\BSplayer\lang\Russian.lng
c:\program files\Webteh\BSplayer\lang\Simplified_Chinese.lng
c:\program files\Webteh\BSplayer\lang\Slovenčina.lng
c:\program files\Webteh\BSplayer\lang\Slovenski.lng
c:\program files\Webteh\BSplayer\lang\Spanish.lng
c:\program files\Webteh\BSplayer\lang\Srpski.lng
c:\program files\Webteh\BSplayer\lang\Swedish.lng
c:\program files\Webteh\BSplayer\lang\Traditional_Chinese.lng
c:\program files\Webteh\BSplayer\lang\Turkish.lng
c:\program files\Webteh\BSplayer\lang\Ukrainian.lng
c:\program files\Webteh\BSplayer\lang\Uzbek.lng
c:\program files\Webteh\BSplayer\lang\Valenciŕ.lng
c:\program files\Webteh\BSplayer\plugins\oldskin.dll
c:\program files\Webteh\BSplayer\sdk\bsp.h
c:\program files\Webteh\BSplayer\sdk\bsp.pas
c:\program files\Webteh\BSplayer\sdk\plugins\bspplg.h
c:\program files\Webteh\BSplayer\sdk\plugins\bspplg.pas
c:\program files\Webteh\BSplayer\sdk\plugins\C\Sample\sample_plugin.def
c:\program files\Webteh\BSplayer\sdk\plugins\C\Sample\sample_plugin.dsp
c:\program files\Webteh\BSplayer\sdk\plugins\C\Sample\sample_plugin.dsw
c:\program files\Webteh\BSplayer\sdk\plugins\C\Sample\sampleplugin.c
c:\program files\Webteh\BSplayer\sdk\plugins\C\sample_subtitles\sample_sub.c
c:\program files\Webteh\BSplayer\sdk\plugins\C\sample_subtitles\sample_sub.def
c:\program files\Webteh\BSplayer\sdk\plugins\C\sample_subtitles\sample_subtitles.dsp
c:\program files\Webteh\BSplayer\sdk\plugins\C\sample_subtitles\sample_subtitles.dsw
c:\program files\Webteh\BSplayer\sdk\plugins\Delphi\sample\sample_plugin.dpr
c:\program files\Webteh\BSplayer\sdk\plugins\Delphi\sample_subtitles\sample_sub.dpr
c:\program files\Webteh\BSplayer\Skins\Base\abd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\abn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\abu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b1n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b1u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b2n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b2u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b3n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b3u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b4n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b4u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exitd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exitn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exitu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fforn.BMP
c:\program files\Webteh\BSplayer\Skins\Base\frewn.BMP
c:\program files\Webteh\BSplayer\Skins\Base\fs2n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fs2u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsmain.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsn.BMP
c:\program files\Webteh\BSplayer\Skins\Base\fsseek.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\main.bmp
c:\program files\Webteh\BSplayer\Skins\Base\minimize.bmp
c:\program files\Webteh\BSplayer\Skins\Base\minimized.bmp
c:\program files\Webteh\BSplayer\Skins\Base\minimizen.bmp
c:\program files\Webteh\BSplayer\Skins\Base\minimizeu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\mutea.bmp
c:\program files\Webteh\BSplayer\Skins\Base\muten.bmp
c:\program files\Webteh\BSplayer\Skins\Base\muteu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\nextd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\nextn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\nextu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\nchapn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\nchapu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\opend.bmp
c:\program files\Webteh\BSplayer\Skins\Base\openn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\openu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\optn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\optu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\paused.bmp
c:\program files\Webteh\BSplayer\Skins\Base\pausen.bmp
c:\program files\Webteh\BSplayer\Skins\Base\pauseu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\pchapn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\pchapu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\playd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\playn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\playu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\prevd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\prevn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\prevu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\rgn.dat
c:\program files\Webteh\BSplayer\Skins\Base\rgnfs.dat
c:\program files\Webteh\BSplayer\Skins\Base\seek.bmp
c:\program files\Webteh\BSplayer\Skins\Base\skin.ini
c:\program files\Webteh\BSplayer\Skins\Base\skinfs.ini
c:\program files\Webteh\BSplayer\Skins\Base\stopd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\stopn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\stopu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\voldd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\voldn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\voldu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\volud.bmp
c:\program files\Webteh\BSplayer\Skins\Base\volume.bmp
c:\program files\Webteh\BSplayer\Skins\Base\volun.bmp
c:\program files\Webteh\BSplayer\Skins\Base\voluu.bmp
c:\program files\Webteh\BSplayer\Skins\Bat lite.bsz
c:\program files\Webteh\BSplayer\Skins\mediaBOX v-1.bsz
c:\program files\Webteh\BSplayer\Skins\MediaBOX V-2.bsz
c:\program files\Webteh\BSplayer\uninstall.EXE
c:\windows\meta4.exe
c:\windows\MOTA113.exe
c:\windows\regedit.com
c:\windows\SET3.tmp
c:\windows\SET4.tmp
c:\windows\SET8.tmp
c:\windows\system32\imon1.dat
c:\windows\system32\taskmgr.com
c:\windows\system32\x.264.exe
c:\windows\Tasks\SA.DAT
c:\windows\x2.64.exe
d:\auto_cad\Inventor_12_2008_CZ\Support\sqlexpress\autorun.inf
d:\potřebné\Antivirus MCafee
d:\potřebné\Antivirus MCafee\4410\sdat4410.exe
d:\potřebné\Antivirus MCafee\4410\SuperDAT.log
d:\potřebné\Antivirus MCafee\4415\sdat4415.exe
d:\potřebné\Antivirus MCafee\4415\SuperDAT.log
d:\potřebné\Antivirus MCafee\4417\sdat4417.exe
d:\potřebné\Antivirus MCafee\4417\SuperDAT.log
d:\potřebné\Antivirus MCafee\4421\sdat4421.exe
d:\potřebné\Antivirus MCafee\4421\SuperDAT.log
d:\potřebné\Antivirus MCafee\4429\sdat4429.exe
d:\potřebné\Antivirus MCafee\4429\SuperDAT.log
d:\potřebné\Antivirus MCafee\4448\sdat4448.exe
d:\potřebné\Antivirus MCafee\4448\SuperDAT.log
d:\potřebné\Antivirus MCafee\4468\sdat4468.exe
d:\potřebné\Antivirus MCafee\4468\SuperDAT.log
d:\potřebné\Antivirus MCafee\4491\sdat4491.exe
d:\potřebné\Antivirus MCafee\4491\SuperDAT.log
d:\potřebné\Antivirus MCafee\4513\sdat4513.exe
d:\potřebné\Antivirus MCafee\4513\SuperDAT.log
d:\potřebné\Antivirus MCafee\4557\sdat4557.exe
d:\potřebné\Antivirus MCafee\4557\SuperDAT.log
d:\potřebné\Antivirus MCafee\4581\sdat4581.exe
d:\potřebné\Antivirus MCafee\4581\SuperDAT.log
d:\potřebné\Antivirus MCafee\4615\sdat4615.exe
d:\potřebné\Antivirus MCafee\4615\SuperDAT.log
d:\potřebné\Antivirus MCafee\4632\sdat4632.exe
d:\potřebné\Antivirus MCafee\4632\SuperDAT.log
d:\potřebné\Antivirus MCafee\4652\sdat4652.exe
d:\potřebné\Antivirus MCafee\4652\SuperDAT.log
d:\potřebné\Antivirus MCafee\4674\sdat4674.exe
d:\potřebné\Antivirus MCafee\4674\SuperDAT.log
d:\potřebné\Antivirus MCafee\4684\sdat4684.exe
d:\potřebné\Antivirus MCafee\4684\SuperDAT.log
d:\potřebné\Antivirus MCafee\4702\sdat4702.exe
d:\potřebné\Antivirus MCafee\4702\SuperDAT.log
d:\potřebné\Antivirus MCafee\4721\sdat4721.exe
d:\potřebné\Antivirus MCafee\4721\SuperDAT.log
d:\potřebné\Antivirus MCafee\4736\sdat4736.exe
d:\potřebné\Antivirus MCafee\4736\SuperDAT.log
d:\potřebné\Antivirus MCafee\4746\sdat4746.exe
d:\potřebné\Antivirus MCafee\4746\SuperDAT.log
d:\potřebné\Antivirus MCafee\4765\sdat4765.exe
d:\potřebné\Antivirus MCafee\4765\SuperDAT.log
d:\potřebné\Antivirus MCafee\4775\sdat4775.exe
d:\potřebné\Antivirus MCafee\4775\SuperDAT.log
d:\potřebné\Antivirus MCafee\4795\sdat4795.exe
d:\potřebné\Antivirus MCafee\4795\SuperDAT.log
d:\potřebné\Antivirus MCafee\4814\sdat4814.exe
d:\potřebné\Antivirus MCafee\4814\SuperDAT.log
d:\potřebné\Antivirus MCafee\4838\sdat4838.exe
d:\potřebné\Antivirus MCafee\4838\SuperDAT.log
d:\potřebné\Antivirus MCafee\4857\sdat4857.exe
d:\potřebné\Antivirus MCafee\4857\SuperDAT.log
d:\potřebné\Antivirus MCafee\4870\sdat4870.exe
d:\potřebné\Antivirus MCafee\4870\SuperDAT.log
d:\potřebné\Antivirus MCafee\4889\sdat4889.exe
d:\potřebné\Antivirus MCafee\4889\SuperDAT.log
d:\potřebné\Antivirus MCafee\4910\sdat4910.exe
d:\potřebné\Antivirus MCafee\4910\SuperDAT.log
d:\potřebné\Antivirus MCafee\4927\sdat4927.exe
d:\potřebné\Antivirus MCafee\4929\sdat4929.exe
d:\potřebné\Antivirus MCafee\4929\SuperDAT.log
d:\potřebné\Antivirus MCafee\4949\sdat4949.exe
d:\potřebné\Antivirus MCafee\4949\SuperDAT.log
d:\potřebné\Antivirus MCafee\4968\sdat4968.exe
d:\potřebné\Antivirus MCafee\4968\SuperDAT.log
d:\potřebné\Antivirus MCafee\4981\sdat4981.exe
d:\potřebné\Antivirus MCafee\4981\SuperDAT.log
d:\potřebné\Antivirus MCafee\5002\sdat5002.exe
d:\potřebné\Antivirus MCafee\5002\SuperDAT.log
d:\potřebné\Antivirus MCafee\5022\sdat5022.exe
d:\potřebné\Antivirus MCafee\5022\SuperDAT.log
d:\potřebné\Antivirus MCafee\5032\sdat5032.exe
d:\potřebné\Antivirus MCafee\5032\SuperDAT.log
d:\potřebné\Antivirus MCafee\5051\sdat5051.exe
d:\potřebné\Antivirus MCafee\5051\SuperDAT.log
d:\potřebné\Antivirus MCafee\5069\sdat5069.exe
d:\potřebné\Antivirus MCafee\5069\SuperDAT.log
d:\potřebné\McAfee Security Center
d:\potřebné\McAfee Security Center\MAS21_116_en-GB_1.exe
d:\potřebné\NOD 32
d:\potřebné\NOD 32\nentczst.exe
d:\potřebné\plneverze\PCBooster4.exe
.
((((((((((((((((((((((((( Soubory vytvořené od 2009-07-05 do 2009-08-05 )))))))))))))))))))))))))))))))
.
2009-08-05 12:34 . 2009-08-05 12:36 -------- d-----w- c:\program files\Wise Registry Cleaner
2009-08-04 13:54 . 2009-08-04 13:54 -------- d---a-w- c:\windows\system32\runouce.exe
2009-08-04 13:53 . 2009-08-04 13:53 632064 ----a-w- c:\windows\system32\msvcr80.dll
2009-08-04 13:53 . 2009-08-04 13:53 554240 ----a-w- c:\windows\system32\msvcp80.dll
2009-08-04 13:53 . 2009-08-04 13:53 34048 ----a-w- c:\windows\system32\eEmpty.exe
2009-08-04 13:53 . 2008-04-14 07:52 137216 ----a-w- c:\windows\system32\T.COM
2009-08-04 13:53 . 2008-04-14 07:52 147968 ----a-w- c:\windows\R.COM
2009-08-04 13:53 . 2009-08-04 13:53 -------- d-----w- c:\program files\Common Files\MicroWorld
2009-08-04 13:28 . 2009-08-04 13:29 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-08-03 08:04 . 2009-08-05 12:22 55656 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2009-08-03 08:04 . 2009-03-30 08:33 96104 ----a-w- c:\windows\system32\drivers\avipbb.sys
2009-08-03 08:04 . 2009-02-13 10:29 22360 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2009-08-03 08:04 . 2009-02-13 10:17 45416 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2009-08-03 08:04 . 2009-08-03 08:04 -------- d-----w- c:\program files\Avira
2009-08-02 12:54 . 2009-08-02 12:54 -------- d-----w- c:\documents and settings\fdsgssdfgsd\DoctorWeb
2009-08-02 11:28 . 2009-08-02 11:28 -------- d-----w- C:\rsit
2009-08-02 10:12 . 2009-07-13 11:36 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-08-02 10:12 . 2009-08-02 10:12 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-08-02 10:12 . 2009-07-13 11:36 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-08-02 09:34 . 2009-08-02 09:34 -------- d-----w- c:\program files\Trend Micro
2009-08-01 21:26 . 2004-08-18 12:00 221184 ----a-w- c:\windows\system32\wmpns.dll
2009-07-30 19:21 . 2009-07-30 19:24 -------- d-----w- c:\program files\ICQ6.5
2009-07-29 09:02 . 2009-07-29 09:02 -------- d-----w- c:\windows\Sun
2009-07-28 08:59 . 2008-04-14 06:51 27648 -c--a-w- c:\windows\system32\dllcache\irmon.dll
2009-07-28 08:59 . 2008-04-14 06:51 27648 ----a-w- c:\windows\system32\irmon.dll
2009-07-28 08:59 . 2008-04-14 06:52 152064 -c--a-w- c:\windows\system32\dllcache\irftp.exe
2009-07-28 08:59 . 2008-04-14 06:52 152064 ----a-w- c:\windows\system32\irftp.exe
2009-07-28 08:59 . 2008-04-14 06:52 8192 -c--a-w- c:\windows\system32\dllcache\wshirda.dll
2009-07-28 08:59 . 2008-04-14 06:52 8192 ----a-w- c:\windows\system32\wshirda.dll
2009-07-24 19:21 . 2008-04-13 22:15 26112 -c--a-w- c:\windows\system32\dllcache\usbser.sys
2009-07-24 19:21 . 2008-04-13 22:15 26112 ----a-w- c:\windows\system32\drivers\usbser.sys
2009-07-24 19:21 . 2008-03-21 11:57 14640 ------w- c:\windows\system32\spmsgXP_2k3.dll
2009-07-24 19:15 . 2009-07-24 19:15 -------- d-----w- c:\program files\Common Files\PCSuite
2009-07-24 19:15 . 2009-07-24 19:15 -------- d-----w- c:\program files\Common Files\Nokia
2009-07-24 19:14 . 2008-08-26 08:26 18816 ----a-w- c:\windows\system32\drivers\pccsmcfd.sys
2009-07-24 19:14 . 2009-07-24 19:14 -------- d-----w- c:\program files\PC Connectivity Solution
2009-07-24 19:14 . 2009-02-09 06:37 7808 ----a-w- c:\windows\system32\drivers\usbser_lowerfltj.sys
2009-07-24 19:14 . 2009-02-09 06:37 7808 ----a-w- c:\windows\system32\drivers\usbser_lowerflt.sys
2009-07-24 19:14 . 2009-02-09 06:37 22016 ----a-w- c:\windows\system32\drivers\ccdcmbo.sys
2009-07-24 19:14 . 2009-02-09 06:37 659968 ----a-w- c:\windows\system32\nmwcdcocls.dll
2009-07-24 19:14 . 2009-02-09 06:37 17664 ----a-w- c:\windows\system32\drivers\ccdcmb.sys
2009-07-24 19:14 . 2009-02-09 06:32 1112288 ----a-w- c:\windows\system32\wdfcoinstaller01007.dll
2009-07-24 19:14 . 2009-02-09 06:37 91136 ----a-w- c:\windows\system32\nmwcdcls.dll
2009-07-24 19:14 . 2009-07-24 19:15 -------- d-----w- c:\program files\Nokia
2009-07-13 08:54 . 2009-07-13 09:32 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2009-07-13 08:54 . 2009-07-13 09:32 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2009-07-13 08:54 . 2009-07-13 09:31 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-08-03 08:02 . 2008-08-20 20:01 -------- d-----w- c:\program files\ESET
2009-08-02 19:36 . 2008-09-01 09:48 -------- d-----w- c:\program files\uTorrent
2009-08-02 12:31 . 2008-10-30 20:15 -------- d-----w- c:\program files\McAfee
2009-07-30 19:22 . 2009-04-06 22:20 -------- d-----w- c:\program files\ICQ6
2009-07-29 06:55 . 2004-08-18 12:00 76696 ----a-w- c:\windows\system32\perfc005.dat
2009-07-29 06:55 . 2004-08-18 12:00 424356 ----a-w- c:\windows\system32\perfh005.dat
2009-07-25 13:58 . 2009-07-25 13:58 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
2009-07-24 19:22 . 2009-07-24 19:22 0 ---ha-w- c:\windows\system32\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
2009-07-24 19:22 . 2009-07-24 19:22 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_user_01_07_00.Wdf
2009-07-24 19:21 . 2009-07-24 19:21 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
2009-07-24 19:21 . 2009-07-24 19:21 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
2009-07-24 19:16 . 2008-08-20 19:53 -------- d-----w- c:\program files\DIFX
2009-06-26 16:51 . 2004-08-18 12:00 667648 ----a-w- c:\windows\system32\wininet.dll
2009-06-26 16:51 . 2004-08-18 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll
2009-06-16 14:40 . 2004-08-18 12:00 81920 ----a-w- c:\windows\system32\fontsub.dll
2009-06-16 14:40 . 2004-08-18 12:00 119808 ----a-w- c:\windows\system32\t2embed.dll
2009-06-03 19:11 . 2004-08-18 12:00 1293824 ----a-w- c:\windows\system32\quartz.dll
2009-05-11 10:47 . 2009-05-11 10:47 1302600 ----a-w- c:\windows\system32\WUDFUpdate_01007.dll
2009-05-09 09:50 . 2009-05-09 09:50 18048 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2009-05-09 09:50 . 2009-05-09 09:50 165376 ----a-w- c:\windows\system32\drivers\atksgt.sys
2009-05-07 15:33 . 2004-08-18 12:00 346624 ----a-w- c:\windows\system32\localspl.dll
2006-05-03 10:06 . 2008-08-21 19:12 163328 --sh--r- c:\windows\system32\flvDX.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe" [2009-06-25 1414144]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-04-12 8429568]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2007-04-12 81920]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2006-12-18 868352]
"CTCheck"="c:\program files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe" [2007-11-06 397312]
"Easy-PrintToolBox"="c:\program files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE" [2004-01-14 409600]
"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2008-03-11 689488]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2008-03-18 1848648]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2007-04-12 1626112]
"BluetoothAuthenticationAgent"="bthprops.cpl" - c:\windows\system32\bthprops.cpl [2008-04-14 110592]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NetworkAccessManager\\Apache Group\\Apache2\\bin\\Apache.exe"=
"c:\\Program Files\\QIP\\qip.exe"=
"c:\\Program Files\\uTorrent\\utorrent.exe"=
"d:\\GaMeS\\Day of Defeat\\hl.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"d:\\GaMeS\\World of Warcraft Wrath of the Lich King\\Launcher.exe"=
"d:\\GaMeS\\Battlefield 2\\BF2.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [3.8.2009 10:04 108289]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2009-08-05 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2008\OneClickStarter.exe [2008-06-20 07:09]
.
.
------- Doplňkový sken -------
.
uInternet Connection Wizard,ShellNext =
ftp://ftp.drweb.com/pub/drweb/cureit/launch.exeIE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
LSP: %SYSTEMROOT%\system32\nvappfilter.dll
FF - ProfilePath - c:\documents and settings\fdsgssdfgsd\Data aplikací\Mozilla\Firefox\Profiles\t74gorzk.default\
FF - prefs.js: browser.startup.homepage -
www.seznam.czFF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-08-05 17:13
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'lsass.exe'(800)
c:\windows\system32\nvappfilter.dll
.
Celkový čas: 2009-08-05 17:15
ComboFix-quarantined-files.txt 2009-08-05 15:15
ComboFix2.txt 2009-08-02 12:05
Před spuštěním: Volných bajtů: 19 961 483 264
Po spuštění: Volných bajtů: 19 551 854 592
Current=3 Default=3 Failed=1 LastKnownGood=4 Sets=1,2,3,4
423 --- E O F --- 2009-07-30 07:14