prosím o preventivní kotrolu mého pc,děkuji.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:42:49, on 7.12.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system3
2\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\AMD\AMD Power Monitor\AMD_PwrMon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\AskBarDis\bar\bin\AskService.exe
C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iolo\common\lib\ioloServiceManager.exe
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\OO Software\Defrag\oodag.exe
C:\Program Files\OO Software\CleverCache\ooccag.exe
C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sandboxie\SbieSvc.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AMD_Display] C:\Program Files\AMD\AMD Power Monitor\AMD_PwrMon.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O4 - Startup: StartupFaster
O4 - Global Startup: StartupFaster
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDow ... ab_nvd.cab
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} - http://www.nvidia.com/content/DriverDow ... rtScan.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASKService - Unknown owner - C:\Program Files\AskBarDis\bar\bin\AskService.exe
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: O&O CleverCache Agent (OOCleverCacheAgent) - O&O Software GmbH - C:\Program Files\OO Software\CleverCache\ooccag.exe
O23 - Service: PDAgent - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe
O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2009.SP2\RpcAgentSrv.exe
O23 - Service: Sandboxie Service (SbieSvc) - tzuk - C:\Program Files\Sandboxie\SbieSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
--
End of file - 9693 bytes
prosím o kotrolu logu Vyřešeno
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: prosím o kotrolu logu
Odinstaluj si Ask Toolbar (AskBarDis).
Spusť HJT (HijackThis), vypni prohlížeče, odpoj se od internetu a fixni (spustit HJT, "Do a system scan only",
zatrhnout políčko před hodnotou, zmáčknout "Fix checked" a poté "Ano"):
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
*****************************************************************************************************************************************
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Spusť HJT (HijackThis), vypni prohlížeče, odpoj se od internetu a fixni (spustit HJT, "Do a system scan only",
zatrhnout políčko před hodnotou, zmáčknout "Fix checked" a poté "Ano"):
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
*****************************************************************************************************************************************
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: prosím o kotrolu logu
jdu na to.
Re: prosím o kotrolu logu
Malwarebytes' Anti-Malware 1.42
Verze databáze: 3310
Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18702
7.12.2009 17:51:56
mbam-log-2009-12-07 (17-51-51).txt
Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 116921
Uplynulý čas: 7 minute(s), 9 second(s)
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 2
Infikované adresáře: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované datové položky registru:
HKEY_CLASSES_ROOT\scrfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: (NOTEPAD.EXE %1) Good: ("%1" /S) -> No action taken.
HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: (NOTEPAD.EXE %1) Good: (regedit.exe "%1") -> No action taken.
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)
Verze databáze: 3310
Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18702
7.12.2009 17:51:56
mbam-log-2009-12-07 (17-51-51).txt
Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 116921
Uplynulý čas: 7 minute(s), 9 second(s)
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 2
Infikované adresáře: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované datové položky registru:
HKEY_CLASSES_ROOT\scrfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: (NOTEPAD.EXE %1) Good: ("%1" /S) -> No action taken.
HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: (NOTEPAD.EXE %1) Good: (regedit.exe "%1") -> No action taken.
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: prosím o kotrolu logu
Takže spusť znovu MbAM a dej Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Konec
Vypni rezidentní štít antiviru (pokud máš tak i antispyware).
Stáhni si ComboFix (by sUBs)
nebo ComboFix (subs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Konec
Vypni rezidentní štít antiviru (pokud máš tak i antispyware).
Stáhni si ComboFix (by sUBs)
nebo ComboFix (subs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: prosím o kotrolu logu
než jsem to stačil uložit,tak se mi to restartovalo.tak to mám projet znova?
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: prosím o kotrolu logu
Nemusíš, zkopíruj mi sem texťák C:\Combofix.txt
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: prosím o kotrolu logu
tak tady je.
ComboFix 09-12-06.A3 - kája 07.12.2009 18:39.3.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.1023.534 [GMT 1:00]
Spuštěný z: c:\documents and settings\kája\Plocha\ComboFix.exe
AV: avast! antivirus 4.8.1368 [VPS 091207-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((( Soubory vytvořené od 2009-11-07 do 2009-12-07 )))))))))))))))))))))))))))))))
.
2009-12-07 16:42 . 2009-12-03 15:14 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-12-07 16:42 . 2009-12-03 15:13 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-07 16:42 . 2009-12-07 16:42 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-12-07 15:32 . 2009-12-07 15:32 -------- d-----w- c:\program files\DVDCover+
2009-12-03 16:43 . 2009-12-03 17:32 -------- d-----w- c:\program files\Microsoft Games
2009-12-02 18:16 . 2009-12-02 18:19 23733 ----a-w- c:\windows\hpqins15.dat
2009-11-27 14:28 . 2009-11-27 14:28 -------- d-----w- c:\program files\Common Files\PCSuite
2009-11-27 14:25 . 2009-11-27 14:29 -------- d-----w- c:\program files\DIFX
2009-11-27 14:25 . 2009-11-27 14:25 -------- d-----w- c:\program files\PC Connectivity Solution
2009-11-27 14:24 . 2009-10-06 10:52 7936 ----a-w- c:\windows\system32\drivers\usbser_lowerfltj.sys
2009-11-27 14:24 . 2009-10-06 10:52 7936 ----a-w- c:\windows\system32\drivers\usbser_lowerflt.sys
2009-11-27 14:24 . 2009-10-06 10:52 22016 ----a-w- c:\windows\system32\drivers\ccdcmbo.sys
2009-11-27 14:24 . 2009-10-06 10:55 1112288 ----a-w- c:\windows\system32\wdfcoinstaller01007.dll
2009-11-27 14:24 . 2009-10-06 10:52 660480 ----a-w- c:\windows\system32\nmwcdcocls.dll
2009-11-27 14:24 . 2009-10-06 10:52 17664 ----a-w- c:\windows\system32\drivers\ccdcmb.sys
2009-11-26 17:35 . 2009-11-26 17:41 19567 ----a-w- c:\windows\hpqins13.dat
2009-11-26 17:23 . 2009-11-26 17:28 78206 ----a-w- c:\windows\hpqins05.dat
2009-11-26 17:09 . 2009-11-26 17:09 -------- d-----w- c:\windows\Hewlett-Packard
2009-11-26 17:02 . 2008-01-24 21:22 16496 ----a-r- c:\windows\system32\drivers\HPZipr12.sys
2009-11-26 17:02 . 2008-01-24 21:22 49920 ----a-r- c:\windows\system32\drivers\HPZid412.sys
2009-11-26 17:01 . 2008-01-24 21:23 271704 ----a-r- c:\windows\system32\hpzids01.dll
2009-11-26 17:01 . 2007-10-20 17:21 278016 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\hpzpp5mu.dll
2009-11-26 17:01 . 2007-10-20 17:25 118272 ----a-w- c:\windows\system32\hpz3l5mu.dll
2009-11-26 17:01 . 2008-01-24 21:22 21568 ----a-r- c:\windows\system32\drivers\HPZius12.sys
2009-11-26 17:00 . 2008-01-24 21:22 729088 ----a-r- c:\windows\system32\hpowiax7.dll
2009-11-26 17:00 . 2008-01-24 21:22 303104 ----a-r- c:\windows\system32\hpovst15.dll
2009-11-26 17:00 . 2008-01-24 21:22 581632 ----a-r- c:\windows\system32\hpotscl6.dll
2009-11-26 17:00 . 2008-01-24 21:22 372736 ----a-r- c:\windows\system32\hppldcoi.dll
2009-11-26 17:00 . 2008-01-24 21:22 309760 ----a-r- c:\windows\system32\difxapi.dll
2009-11-26 16:53 . 2009-11-26 16:53 -------- d-----w- c:\program files\Common Files\HP
2009-11-26 16:53 . 2009-11-26 16:53 -------- d-----w- c:\program files\Hewlett-Packard
2009-11-26 16:52 . 2009-11-26 16:52 -------- d-----w- c:\program files\Common Files\Hewlett-Packard
2009-11-26 16:50 . 2004-08-03 22:01 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2009-11-26 16:50 . 2004-08-03 22:01 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2009-11-26 16:47 . 2009-11-26 17:09 -------- d-----w- c:\program files\HP
2009-11-26 16:45 . 2009-11-26 17:03 186308 ----a-w- c:\windows\hpoins28.dat
2009-11-26 16:45 . 2008-07-01 04:02 796 ------w- c:\windows\hpomdl28.dat
2009-11-25 16:16 . 2009-11-25 16:17 -------- d-----w- c:\program files\hkSFV
2009-11-25 10:13 . 2009-11-25 10:13 -------- d-----w- c:\program files\MSXML 4.0
2009-11-24 09:00 . 2009-11-24 09:00 -------- d-----w- c:\program files\AviSynth 2.5
2009-11-24 09:00 . 2009-11-24 09:00 -------- d-----w- c:\program files\Red Kawa
2009-11-24 08:40 . 2009-11-26 17:35 -------- d-----w- c:\documents and settings\kßja
2009-11-24 08:40 . 2009-11-24 08:40 -------- d-----w- c:\documents and settings\kßja\NabÝdka Start
2009-11-24 08:40 . 2009-12-07 12:07 -------- d-----w- c:\program files\MediaCoder
2009-11-22 16:35 . 2009-11-24 15:58 3532 ----a-w- C:\drmHeader.bin
2009-11-22 14:20 . 2009-11-22 14:20 0 ----a-w- c:\windows\nsreg.dat
2009-11-22 10:50 . 2009-12-02 17:31 -------- d-----w- c:\program files\HandBrake
2009-11-22 01:31 . 2008-04-17 12:12 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2009-11-22 01:30 . 2009-11-22 01:30 -------- d-----w- c:\program files\iPod
2009-11-22 01:30 . 2009-11-22 01:31 -------- d-----w- c:\program files\iTunes
2009-11-22 01:29 . 2009-11-22 01:29 -------- d-----w- c:\program files\Apple Software Update
2009-11-22 01:29 . 2009-08-28 18:42 40448 ----a-w- c:\windows\system32\drivers\usbaapl.sys
2009-11-22 01:29 . 2009-08-28 18:42 2065696 ----a-w- c:\windows\system32\usbaaplrc.dll
2009-11-22 01:28 . 2009-11-22 01:30 -------- d-----w- c:\program files\Common Files\Apple
2009-11-21 21:01 . 2009-11-21 21:01 54772 ---ha-w- c:\windows\system32\mlfcache.dat
2009-11-21 18:29 . 2009-11-21 18:29 -------- d-----w- c:\program files\QuickTime
2009-11-21 13:34 . 2009-11-21 22:49 -------- d-----w- c:\program files\Wise Disk Cleaner
2009-11-18 12:14 . 2009-11-18 12:20 -------- d-----w- c:\program files\Startup Faster
2009-11-18 11:54 . 2009-11-18 11:54 -------- d-----w- c:\program files\Reference Assemblies
2009-11-18 11:03 . 2009-10-02 04:44 92160 -c----w- c:\windows\system32\dllcache\iecompat.dll
2009-11-18 11:02 . 2009-08-29 07:58 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2009-11-18 11:02 . 2009-08-29 07:58 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2009-11-18 11:02 . 2009-08-29 07:58 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2009-11-18 11:02 . 2009-08-29 07:58 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2009-11-18 11:02 . 2009-08-29 07:58 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2009-11-18 11:02 . 2009-08-29 07:58 11069440 -c----w- c:\windows\system32\dllcache\ieframe.dll
2009-11-17 21:19 . 2009-11-17 21:20 -------- d-----w- c:\windows\system32\CatRoot_bak
2009-11-17 21:00 . 2006-10-26 18:56 33104 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2009-11-17 21:00 . 2006-10-26 18:56 32592 ----a-w- c:\windows\system32\msonpmon.dll
2009-11-17 20:57 . 2009-11-17 20:57 -------- d-----w- c:\program files\Microsoft Works
2009-11-17 20:56 . 2009-11-17 20:56 -------- d-----w- c:\program files\Microsoft.NET
2009-11-17 20:54 . 2009-11-17 20:54 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-11-17 20:53 . 2009-11-17 20:57 -------- d-----w- c:\windows\SHELLNEW
2009-11-17 11:51 . 2008-08-14 09:51 138368 -c----w- c:\windows\system32\dllcache\afd.sys
2009-11-17 11:51 . 2008-06-20 17:42 247296 -c----w- c:\windows\system32\dllcache\mswsock.dll
2009-11-17 09:58 . 2009-11-17 11:44 -------- d-----w- c:\windows\system32\wbem\Repository.002
2009-11-17 09:41 . 2009-11-17 09:42 -------- d-----w- C:\5d1c994c08196049e613ebe5690e
2009-11-16 13:22 . 2009-11-17 11:46 -------- d-----w- c:\windows\system32\wbem\Repository
2009-11-16 13:16 . 2009-11-16 13:16 -------- d-----w- C:\fd3a5f783c43a358aef094c8eaa4
2009-11-16 12:57 . 2008-07-03 13:15 8458752 -c----w- c:\windows\system32\dllcache\shell32.dll
2009-11-16 12:57 . 2008-12-16 12:50 351232 -c----w- c:\windows\system32\dllcache\winhttp.dll
2009-11-16 12:57 . 2009-08-05 09:07 205312 -c----w- c:\windows\system32\dllcache\mswebdvd.dll
2009-11-16 12:57 . 2008-10-23 13:01 283648 -c----w- c:\windows\system32\dllcache\gdi32.dll
2009-11-16 12:56 . 2009-09-11 14:35 133632 -c----w- c:\windows\system32\dllcache\msv1_0.dll
2009-11-16 12:56 . 2009-06-25 08:48 723456 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2009-11-16 12:56 . 2009-06-25 08:48 59392 -c----w- c:\windows\system32\dllcache\wdigest.dll
2009-11-16 12:56 . 2009-06-25 08:48 56320 -c----w- c:\windows\system32\dllcache\secur32.dll
2009-11-16 12:56 . 2009-06-25 08:48 168448 -c----w- c:\windows\system32\dllcache\schannel.dll
2009-11-16 12:56 . 2009-06-22 11:34 92544 -c----w- c:\windows\system32\dllcache\ksecdd.sys
2009-11-16 12:56 . 2009-06-25 08:48 298496 -c----w- c:\windows\system32\dllcache\kerberos.dll
2009-11-16 09:56 . 2008-05-01 14:33 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2009-11-16 09:53 . 2005-07-26 04:42 60416 -c----w- c:\windows\system32\dllcache\colbact.dll
2009-11-16 09:53 . 2009-03-06 14:47 283648 -c----w- c:\windows\system32\dllcache\pdh.dll
2009-11-16 09:53 . 2009-02-09 10:22 473088 -c----w- c:\windows\system32\dllcache\fastprox.dll
2009-11-16 09:53 . 2009-02-06 16:39 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2009-11-16 09:53 . 2009-02-09 10:22 683520 -c----w- c:\windows\system32\dllcache\advapi32.dll
2009-11-16 09:53 . 2009-02-09 10:11 111104 -c----w- c:\windows\system32\dllcache\services.exe
2009-11-16 09:53 . 2009-02-09 10:22 709632 -c----w- c:\windows\system32\dllcache\ntdll.dll
2009-11-16 09:53 . 2009-02-09 10:22 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2009-11-16 09:53 . 2009-06-21 22:07 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2009-11-16 09:51 . 2009-07-10 13:42 1315328 -c----w- c:\windows\system32\dllcache\msoe.dll
2009-11-16 09:50 . 2008-04-11 18:51 683520 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2009-11-16 09:43 . 2009-08-04 17:07 2138112 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2009-11-16 09:43 . 2009-08-04 17:07 2059904 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe
2009-11-16 09:43 . 2009-08-04 17:07 2182528 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2009-11-16 09:43 . 2009-08-04 17:07 2017792 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2009-11-16 09:42 . 2008-04-21 21:28 216576 -c----w- c:\windows\system32\dllcache\wordpad.exe
2009-11-16 09:31 . 2009-06-05 07:46 655872 -c----w- c:\windows\system32\dllcache\mstscax.dll
2009-11-16 09:31 . 2009-03-08 03:33 420352 -c--a-w- c:\windows\system32\dllcache\vbscript.dll
2009-11-16 09:02 . 2009-11-16 13:16 -------- d-----w- c:\windows\system32\wbem\Repository.001
2009-11-15 22:30 . 2005-10-20 22:34 992768 ----a-w- c:\windows\system32\esent(6).dll
2009-11-15 22:30 . 2005-10-20 22:34 992768 ----a-w- c:\windows\system32\esent(5).dll
2009-11-15 22:30 . 2005-10-20 22:30 1083904 ----a-w- c:\windows\system32\esent(4).dll
2009-11-15 22:28 . 2009-07-31 04:59 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2009-11-15 22:16 . 2008-12-16 12:50 351232 ----a-w- c:\windows\system32\winhttp.dll
2009-11-15 22:16 . 2004-08-17 14:49 351232 ----a-w- c:\windows\system32\winhttp(5).dll
2009-11-15 22:16 . 2004-08-17 14:49 18944 ----a-w- c:\windows\system32\qmgrprxy.dll
2009-11-15 22:16 . 2004-07-01 22:10 331776 ----a-w- c:\windows\system32\winhttp(6).dll
2009-11-15 04:26 . 2002-09-23 12:00 14848 -c--a-w- c:\windows\system32\dllcache\register.exe
2009-11-15 04:25 . 2002-09-23 12:00 18944 -c--a-w- c:\windows\system32\dllcache\cprofile.exe
2009-11-15 04:23 . 2004-08-17 14:49 45568 ----a-w- c:\windows\system32\safrslv.dll
2009-11-15 01:26 . 2004-08-03 22:07 52864 ----a-w- c:\windows\system32\drivers\dmusic.sys
2009-11-15 01:26 . 2006-06-14 08:47 6400 ----a-w- c:\windows\system32\drivers\splitter.sys
2009-11-15 01:26 . 2004-08-17 14:43 58240 ----a-w- c:\windows\system32\drivers\redbook.sys
2009-11-15 01:25 . 2004-08-17 14:49 40840 ----a-w- c:\windows\system32\drivers\termdd.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-07 16:09 . 2009-01-23 21:44 -------- d-----w- c:\program files\Vuze
2009-12-06 21:47 . 2009-07-19 16:15 -------- d-----w- c:\program files\trend micro
2009-12-03 17:34 . 2009-01-23 15:46 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-11-28 13:42 . 2009-04-26 14:14 -------- d-----w- c:\program files\Common Files\Nokia
2009-11-28 13:41 . 2009-03-12 13:50 -------- d-----w- c:\program files\Nokia
2009-11-25 16:16 . 2009-05-23 12:29 -------- d-----w- c:\program files\Spyware Terminator
2009-11-24 23:54 . 2009-01-23 17:48 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-24 23:51 . 2009-01-23 17:48 93424 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-11-24 23:50 . 2009-01-23 17:48 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-11-24 23:50 . 2009-01-23 17:48 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-11-24 23:50 . 2009-01-23 19:03 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-11-24 23:49 . 2009-01-23 17:48 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-24 23:48 . 2009-01-23 17:48 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-24 23:47 . 2009-01-23 17:48 27408 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-11-24 23:47 . 2009-01-23 17:48 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-21 17:46 . 2009-11-07 19:51 -------- d-----w- c:\program files\DivX
2009-11-21 17:44 . 2009-11-07 19:51 -------- d-----w- c:\program files\Common Files\DivX Shared
2009-11-21 13:14 . 2009-10-31 23:08 -------- d-----w- c:\program files\Wise Registry Cleaner
2009-11-19 07:47 . 2002-09-23 12:00 89350 ----a-w- c:\windows\system32\perfc005.dat
2009-11-19 07:47 . 2002-09-23 12:00 456402 ----a-w- c:\windows\system32\perfh005.dat
2009-11-18 11:54 . 2009-01-23 20:27 -------- d-----w- c:\program files\MSBuild
2009-11-16 13:03 . 2009-01-23 15:33 86327 ----a-w- c:\windows\PCHealth\HelpCtr\OfflineCache\index.dat
2009-11-16 13:03 . 2009-01-23 15:33 2724 ----a-w- c:\windows\PCHealth\HelpCtr\PackageStore\SkuStore.bin
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\WYG5NDBZ.DAT
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\3T737LBN.DAT
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\QGA2S4N5.DAT
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\JJRJHBBP.DAT
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\DZN3ZBX7.DAT
2009-11-15 04:22 . 2009-01-23 15:31 22916 ----a-w- c:\windows\system32\emptyregdb.dat
2009-11-14 18:54 . 2009-04-02 12:45 -------- d-----w- c:\program files\CDBurnerXP
2009-11-09 20:49 . 2009-01-23 23:29 -------- d-----w- c:\program files\ASUS
2009-11-09 20:31 . 2009-01-23 20:18 -------- d-----w- c:\program files\Windows Media Connect 2
2009-11-09 20:08 . 2009-01-23 15:46 -------- d-----w- c:\program files\AMD
2009-11-09 17:10 . 2009-10-31 21:12 -------- d-----w- c:\program files\SpeedFan
2009-11-08 20:45 . 2009-02-21 21:17 -------- d-----w- c:\program files\Realtek AC97
2009-11-08 13:56 . 2009-11-03 21:04 -------- d-----w- c:\program files\USB Disk Win98 Driver
2009-11-08 10:41 . 2009-02-19 18:47 -------- d-----w- c:\program files\OO Software
2009-11-08 10:37 . 2009-01-24 09:29 -------- d-----w- c:\program files\Sandboxie
2009-11-08 09:52 . 2009-02-18 19:30 -------- d-----w- c:\program files\Uniblue
2009-11-05 18:57 . 2009-11-01 16:51 -------- d-----w- c:\program files\Prime95
2009-11-02 16:06 . 2009-11-02 16:06 1462272 ----a-w- c:\windows\system32\cpuz147.exe
2009-11-01 19:50 . 2009-11-01 19:50 -------- d-----w- c:\program files\SiSoftware
2009-11-01 19:47 . 2009-10-25 21:03 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-11-01 15:13 . 2009-11-01 15:13 -------- d-----w- c:\program files\cpuz_152
2009-11-01 14:35 . 2009-11-01 14:35 -------- d-----w- c:\program files\A64MemFreq11
2009-11-01 11:42 . 2009-10-25 21:04 -------- d-----w- c:\program files\SUPERAntiSpyware
2009-11-01 11:33 . 2009-10-25 21:37 -------- d-----w- c:\program files\Net Meter Pro
2009-10-31 23:05 . 2009-10-31 23:05 -------- d-----w- c:\program files\MemSet
2009-10-31 23:02 . 2009-10-31 23:02 -------- d-----w- c:\program files\OCCT
2009-10-31 22:15 . 2009-10-31 22:15 -------- d-----w- c:\program files\oZone3D
2009-10-30 21:04 . 2009-01-23 18:29 7816 ----a-w- c:\windows\system32\d3d9caps.dat
2009-10-30 21:02 . 2009-10-30 21:02 552 ----a-w- c:\windows\system32\d3d8caps.dat
2009-10-25 21:36 . 2009-10-25 21:34 -------- d-----w- c:\program files\CPU Speed Pro
2009-10-25 19:11 . 2009-10-25 19:11 -------- d-----w- c:\program files\DVD Shrink
2009-10-11 18:11 . 2009-10-11 18:08 -------- d-----w- c:\program files\ICQ6.5
2009-10-06 10:52 . 2009-03-12 13:50 91136 ----a-w- c:\windows\system32\nmwcdcls.dll
2009-10-01 09:29 . 2009-10-23 06:56 195440 ------w- c:\windows\system32\MpSigStub.exe
2009-09-25 16:42 . 2009-11-07 19:51 9464 ------w- c:\windows\system32\drivers\cdralw2k.sys
2009-09-25 16:42 . 2009-11-07 19:51 9336 ------w- c:\windows\system32\drivers\cdr4_xp.sys
2009-09-25 16:42 . 2009-11-07 19:51 43528 ------w- c:\windows\system32\drivers\PxHelp20.sys
2009-09-25 16:42 . 2009-11-07 19:51 120056 ------w- c:\windows\system32\pxcpyi64.exe
2009-09-25 16:42 . 2009-11-07 19:51 118520 ------w- c:\windows\system32\pxinsi64.exe
2009-09-25 16:42 . 2009-11-07 19:51 129784 ------w- c:\windows\system32\pxafs.dll
2009-09-25 16:41 . 2009-09-25 16:41 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-09-11 23:34 . 2009-09-11 23:34 1254656 ----a-w- c:\windows\system32\ooscrsav.scr
2009-09-11 23:33 . 2009-09-11 23:33 199936 ----a-w- c:\windows\system32\oodbs.exe
2009-09-11 23:29 . 2009-09-11 23:29 546048 ----a-w- c:\windows\system32\oodssrs.dll
2009-09-11 23:29 . 2009-09-11 23:29 9984 ----a-w- c:\windows\system32\oodbsrs.dll
2009-09-11 14:35 . 2002-09-23 12:00 133632 ----a-w- c:\windows\system32\msv1_0.dll
2009-07-17 17:34 . 2009-07-17 12:59 30001184 --sha-w- c:\windows\system32\drivers\fidbox.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-09-17 13574144]
"AMD_Display"="c:\program files\AMD\AMD Power Monitor\AMD_PwrMon.exe" [2009-11-08 1449984]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2004-08-17 15360]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"tscuninstall"="c:\windows\system32\tscupgrd.exe" [2004-08-17 44544]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 14:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ PDBoot.exe\0autocheck autochk *\0autocheck smrgdf c:\documents and settings\kája\Data aplikací\iolo\\0OODBS
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Anti Trojan Elite
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer [X]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2004-08-17 14:49 15360 ------w- c:\windows\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2008-03-25 20:27 49152 ----a-w- c:\program files\HP\HP Software Update\hpwuSchd2.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
2008-08-20 09:54 150016 ----a-w- c:\program files\HP\Digital Imaging\bin\HpqSRmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2009-11-12 15:33 141600 ----a-w- c:\program files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2]
2009-10-27 14:10 401728 ----a-w- c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2008-09-17 22:55 13574144 ----a-w- c:\windows\system32\nvcpl.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2008-09-17 22:55 86016 ----a-w- c:\windows\system32\nvmctray.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
2009-11-11 09:57 1451520 ----a-w- c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
2007-04-16 14:28 577536 ----a-w- c:\windows\soundman.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartupFaster]
2008-09-07 18:36 1402080 ----a-w- c:\program files\Startup Faster\StartupLoader.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
2009-10-12 20:24 2000112 ----a-w- c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uniblue RegistryBooster 2]
2008-07-08 14:05 1923352 ----a-w- c:\program files\Uniblue\RegistryBooster 2\RegistryBooster.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Vuze\\Azureus.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe"=
"c:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite 2009.SP2\\RpcAgentSrv.exe"=
"c:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite 2009.SP2\\WNt500x86\\RpcSandraSrv.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\Nokia\\Nokia Ovi Suite\\NokiaOviSuite.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"=
"c:\\Program Files\\Common Files\\HP\\Digital Imaging\\bin\\hpqPhotoCrm.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqsudi.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpsapp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpse.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgplgtupl.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgpc01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgm.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgh.exe"=
"c:\\Program Files\\HP\\HP Software Update\\hpwucli.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Smart Web Printing\\SmartWebPrintExe.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
"AllowInboundEchoRequest"= 1 (0x1)
R0 hotcore2;hotcore2;c:\windows\system32\drivers\hotcore2.sys [24.1.2009 9:11 30808]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [23.1.2009 18:48 114768]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [12.10.2009 21:24 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [12.10.2009 21:24 74480]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [23.1.2009 20:03 20560]
R2 ioloFileInfoList;iolo FileInfoList Service;c:\program files\iolo\Common\Lib\ioloServiceManager.exe [13.7.2009 10:38 592232]
R2 ioloSystemService;iolo System Service;c:\program files\iolo\Common\Lib\ioloServiceManager.exe [13.7.2009 10:38 592232]
R3 SbieDrv;SbieDrv;c:\program files\Sandboxie\SbieDrv.sys [30.9.2009 10:15 116736]
S1 TVicPort64;TVicPort64;\??\c:\windows\SysWOW64\drivers\TVicPort64.sys --> c:\windows\SysWOW64\drivers\TVicPort64.sys [?]
S2 ATE_PROCMON;ATE_PROCMON;\??\c:\program files\Anti Trojan Elite\ATEPMon.sys --> c:\program files\Anti Trojan Elite\ATEPMon.sys [?]
S3 BTCAMDRV;Mobiola Web Camera driver;c:\windows\system32\drivers\BTCamDrv.sys [16.5.2009 11:17 219264]
S3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [17.6.2009 13:20 12648]
S3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\program files\SiSoftware\SiSoftware Sandra Lite 2009.SP2\RpcAgentSrv.exe [1.11.2009 20:50 98488]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [12.10.2009 21:24 7408]
--- Ostatní služby/ovladače v paměti ---
*Deregistered* - mchInjDrv
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper REG_MULTI_SZ getPlusHelper
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
LSP: %SYSTEMROOT%\system32\nvappfilter.dll
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDow ... ab_nvd.cab
FF - ProfilePath - c:\documents and settings\kája\Data aplikací\Mozilla\Firefox\Profiles\am89cmnq.default\
FF - prefs.js: browser.startup.homepage - seznam.cz
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBook.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBookDB.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpNeoLogger.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSaturn.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartSelect.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartWebPrinting.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSWPOperation.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPLogging.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTC.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTL.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXREStub.dll
FF - component: c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\components\FirefoxExtension.dll
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\plugins\nphpclipbook.dll
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
.
------- Asociace souborů -------
.
JSEFile=NOTEPAD.EXE %1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
Notify-dimsntfy - (no file)
AddRemove-Capture Setup - c:\program files\Capture\DeIsL1.isu -cc:\program files\Capture\_ISREG32.DLL
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-07 18:56
Windows 5.1.2600 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1409082233-1897051121-682003330-1003\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
"OODEFRAG11.00.00.01WORKSTATION"="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"
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
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(732)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
- - - - - - - > 'lsass.exe'(788)
c:\windows\system32\nvappfilter.dll
- - - - - - - > 'explorer.exe'(3756)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
c:\program files\CDBurnerXP\NMSAccessU.exe
c:\windows\system32\nvsvc32.exe
c:\program files\OO Software\Defrag\oodag.exe
c:\program files\OO Software\CleverCache\ooccag.exe
c:\program files\Raxco\PerfectDisk10\PDAgent.exe
c:\program files\Sandboxie\SbieSvc.exe
c:\windows\system32\SearchIndexer.exe
c:\windows\system32\SearchProtocolHost.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\program files\Raxco\PerfectDisk10\PDEngine.exe
c:\program files\Raxco\PerfectDisk10\PDAgentS1.exe
c:\program files\Raxco\PerfectDisk10\PerfectDisk.exe
c:\windows\system32\SearchFilterHost.exe
.
**************************************************************************
.
Celkový čas: 2009-12-07 18:59 - počítač byl restartován
ComboFix-quarantined-files.txt 2009-12-07 17:59
Před spuštěním: Volných bajtů: 32 330 199 040
Po spuštění: Volných bajtů: 32 344 530 944
Current=1 Default=1 Failed=0 LastKnownGood=9 Sets=1,2,3,4,5,6,7,8,9
- - End Of File - - 2B45FCF5FDC1E833D63D46C95D3DECB0
ComboFix 09-12-06.A3 - kája 07.12.2009 18:39.3.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.1023.534 [GMT 1:00]
Spuštěný z: c:\documents and settings\kája\Plocha\ComboFix.exe
AV: avast! antivirus 4.8.1368 [VPS 091207-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((( Soubory vytvořené od 2009-11-07 do 2009-12-07 )))))))))))))))))))))))))))))))
.
2009-12-07 16:42 . 2009-12-03 15:14 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-12-07 16:42 . 2009-12-03 15:13 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-07 16:42 . 2009-12-07 16:42 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-12-07 15:32 . 2009-12-07 15:32 -------- d-----w- c:\program files\DVDCover+
2009-12-03 16:43 . 2009-12-03 17:32 -------- d-----w- c:\program files\Microsoft Games
2009-12-02 18:16 . 2009-12-02 18:19 23733 ----a-w- c:\windows\hpqins15.dat
2009-11-27 14:28 . 2009-11-27 14:28 -------- d-----w- c:\program files\Common Files\PCSuite
2009-11-27 14:25 . 2009-11-27 14:29 -------- d-----w- c:\program files\DIFX
2009-11-27 14:25 . 2009-11-27 14:25 -------- d-----w- c:\program files\PC Connectivity Solution
2009-11-27 14:24 . 2009-10-06 10:52 7936 ----a-w- c:\windows\system32\drivers\usbser_lowerfltj.sys
2009-11-27 14:24 . 2009-10-06 10:52 7936 ----a-w- c:\windows\system32\drivers\usbser_lowerflt.sys
2009-11-27 14:24 . 2009-10-06 10:52 22016 ----a-w- c:\windows\system32\drivers\ccdcmbo.sys
2009-11-27 14:24 . 2009-10-06 10:55 1112288 ----a-w- c:\windows\system32\wdfcoinstaller01007.dll
2009-11-27 14:24 . 2009-10-06 10:52 660480 ----a-w- c:\windows\system32\nmwcdcocls.dll
2009-11-27 14:24 . 2009-10-06 10:52 17664 ----a-w- c:\windows\system32\drivers\ccdcmb.sys
2009-11-26 17:35 . 2009-11-26 17:41 19567 ----a-w- c:\windows\hpqins13.dat
2009-11-26 17:23 . 2009-11-26 17:28 78206 ----a-w- c:\windows\hpqins05.dat
2009-11-26 17:09 . 2009-11-26 17:09 -------- d-----w- c:\windows\Hewlett-Packard
2009-11-26 17:02 . 2008-01-24 21:22 16496 ----a-r- c:\windows\system32\drivers\HPZipr12.sys
2009-11-26 17:02 . 2008-01-24 21:22 49920 ----a-r- c:\windows\system32\drivers\HPZid412.sys
2009-11-26 17:01 . 2008-01-24 21:23 271704 ----a-r- c:\windows\system32\hpzids01.dll
2009-11-26 17:01 . 2007-10-20 17:21 278016 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\hpzpp5mu.dll
2009-11-26 17:01 . 2007-10-20 17:25 118272 ----a-w- c:\windows\system32\hpz3l5mu.dll
2009-11-26 17:01 . 2008-01-24 21:22 21568 ----a-r- c:\windows\system32\drivers\HPZius12.sys
2009-11-26 17:00 . 2008-01-24 21:22 729088 ----a-r- c:\windows\system32\hpowiax7.dll
2009-11-26 17:00 . 2008-01-24 21:22 303104 ----a-r- c:\windows\system32\hpovst15.dll
2009-11-26 17:00 . 2008-01-24 21:22 581632 ----a-r- c:\windows\system32\hpotscl6.dll
2009-11-26 17:00 . 2008-01-24 21:22 372736 ----a-r- c:\windows\system32\hppldcoi.dll
2009-11-26 17:00 . 2008-01-24 21:22 309760 ----a-r- c:\windows\system32\difxapi.dll
2009-11-26 16:53 . 2009-11-26 16:53 -------- d-----w- c:\program files\Common Files\HP
2009-11-26 16:53 . 2009-11-26 16:53 -------- d-----w- c:\program files\Hewlett-Packard
2009-11-26 16:52 . 2009-11-26 16:52 -------- d-----w- c:\program files\Common Files\Hewlett-Packard
2009-11-26 16:50 . 2004-08-03 22:01 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2009-11-26 16:50 . 2004-08-03 22:01 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2009-11-26 16:47 . 2009-11-26 17:09 -------- d-----w- c:\program files\HP
2009-11-26 16:45 . 2009-11-26 17:03 186308 ----a-w- c:\windows\hpoins28.dat
2009-11-26 16:45 . 2008-07-01 04:02 796 ------w- c:\windows\hpomdl28.dat
2009-11-25 16:16 . 2009-11-25 16:17 -------- d-----w- c:\program files\hkSFV
2009-11-25 10:13 . 2009-11-25 10:13 -------- d-----w- c:\program files\MSXML 4.0
2009-11-24 09:00 . 2009-11-24 09:00 -------- d-----w- c:\program files\AviSynth 2.5
2009-11-24 09:00 . 2009-11-24 09:00 -------- d-----w- c:\program files\Red Kawa
2009-11-24 08:40 . 2009-11-26 17:35 -------- d-----w- c:\documents and settings\kßja
2009-11-24 08:40 . 2009-11-24 08:40 -------- d-----w- c:\documents and settings\kßja\NabÝdka Start
2009-11-24 08:40 . 2009-12-07 12:07 -------- d-----w- c:\program files\MediaCoder
2009-11-22 16:35 . 2009-11-24 15:58 3532 ----a-w- C:\drmHeader.bin
2009-11-22 14:20 . 2009-11-22 14:20 0 ----a-w- c:\windows\nsreg.dat
2009-11-22 10:50 . 2009-12-02 17:31 -------- d-----w- c:\program files\HandBrake
2009-11-22 01:31 . 2008-04-17 12:12 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2009-11-22 01:30 . 2009-11-22 01:30 -------- d-----w- c:\program files\iPod
2009-11-22 01:30 . 2009-11-22 01:31 -------- d-----w- c:\program files\iTunes
2009-11-22 01:29 . 2009-11-22 01:29 -------- d-----w- c:\program files\Apple Software Update
2009-11-22 01:29 . 2009-08-28 18:42 40448 ----a-w- c:\windows\system32\drivers\usbaapl.sys
2009-11-22 01:29 . 2009-08-28 18:42 2065696 ----a-w- c:\windows\system32\usbaaplrc.dll
2009-11-22 01:28 . 2009-11-22 01:30 -------- d-----w- c:\program files\Common Files\Apple
2009-11-21 21:01 . 2009-11-21 21:01 54772 ---ha-w- c:\windows\system32\mlfcache.dat
2009-11-21 18:29 . 2009-11-21 18:29 -------- d-----w- c:\program files\QuickTime
2009-11-21 13:34 . 2009-11-21 22:49 -------- d-----w- c:\program files\Wise Disk Cleaner
2009-11-18 12:14 . 2009-11-18 12:20 -------- d-----w- c:\program files\Startup Faster
2009-11-18 11:54 . 2009-11-18 11:54 -------- d-----w- c:\program files\Reference Assemblies
2009-11-18 11:03 . 2009-10-02 04:44 92160 -c----w- c:\windows\system32\dllcache\iecompat.dll
2009-11-18 11:02 . 2009-08-29 07:58 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2009-11-18 11:02 . 2009-08-29 07:58 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2009-11-18 11:02 . 2009-08-29 07:58 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2009-11-18 11:02 . 2009-08-29 07:58 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2009-11-18 11:02 . 2009-08-29 07:58 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2009-11-18 11:02 . 2009-08-29 07:58 11069440 -c----w- c:\windows\system32\dllcache\ieframe.dll
2009-11-17 21:19 . 2009-11-17 21:20 -------- d-----w- c:\windows\system32\CatRoot_bak
2009-11-17 21:00 . 2006-10-26 18:56 33104 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2009-11-17 21:00 . 2006-10-26 18:56 32592 ----a-w- c:\windows\system32\msonpmon.dll
2009-11-17 20:57 . 2009-11-17 20:57 -------- d-----w- c:\program files\Microsoft Works
2009-11-17 20:56 . 2009-11-17 20:56 -------- d-----w- c:\program files\Microsoft.NET
2009-11-17 20:54 . 2009-11-17 20:54 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-11-17 20:53 . 2009-11-17 20:57 -------- d-----w- c:\windows\SHELLNEW
2009-11-17 11:51 . 2008-08-14 09:51 138368 -c----w- c:\windows\system32\dllcache\afd.sys
2009-11-17 11:51 . 2008-06-20 17:42 247296 -c----w- c:\windows\system32\dllcache\mswsock.dll
2009-11-17 09:58 . 2009-11-17 11:44 -------- d-----w- c:\windows\system32\wbem\Repository.002
2009-11-17 09:41 . 2009-11-17 09:42 -------- d-----w- C:\5d1c994c08196049e613ebe5690e
2009-11-16 13:22 . 2009-11-17 11:46 -------- d-----w- c:\windows\system32\wbem\Repository
2009-11-16 13:16 . 2009-11-16 13:16 -------- d-----w- C:\fd3a5f783c43a358aef094c8eaa4
2009-11-16 12:57 . 2008-07-03 13:15 8458752 -c----w- c:\windows\system32\dllcache\shell32.dll
2009-11-16 12:57 . 2008-12-16 12:50 351232 -c----w- c:\windows\system32\dllcache\winhttp.dll
2009-11-16 12:57 . 2009-08-05 09:07 205312 -c----w- c:\windows\system32\dllcache\mswebdvd.dll
2009-11-16 12:57 . 2008-10-23 13:01 283648 -c----w- c:\windows\system32\dllcache\gdi32.dll
2009-11-16 12:56 . 2009-09-11 14:35 133632 -c----w- c:\windows\system32\dllcache\msv1_0.dll
2009-11-16 12:56 . 2009-06-25 08:48 723456 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2009-11-16 12:56 . 2009-06-25 08:48 59392 -c----w- c:\windows\system32\dllcache\wdigest.dll
2009-11-16 12:56 . 2009-06-25 08:48 56320 -c----w- c:\windows\system32\dllcache\secur32.dll
2009-11-16 12:56 . 2009-06-25 08:48 168448 -c----w- c:\windows\system32\dllcache\schannel.dll
2009-11-16 12:56 . 2009-06-22 11:34 92544 -c----w- c:\windows\system32\dllcache\ksecdd.sys
2009-11-16 12:56 . 2009-06-25 08:48 298496 -c----w- c:\windows\system32\dllcache\kerberos.dll
2009-11-16 09:56 . 2008-05-01 14:33 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2009-11-16 09:53 . 2005-07-26 04:42 60416 -c----w- c:\windows\system32\dllcache\colbact.dll
2009-11-16 09:53 . 2009-03-06 14:47 283648 -c----w- c:\windows\system32\dllcache\pdh.dll
2009-11-16 09:53 . 2009-02-09 10:22 473088 -c----w- c:\windows\system32\dllcache\fastprox.dll
2009-11-16 09:53 . 2009-02-06 16:39 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2009-11-16 09:53 . 2009-02-09 10:22 683520 -c----w- c:\windows\system32\dllcache\advapi32.dll
2009-11-16 09:53 . 2009-02-09 10:11 111104 -c----w- c:\windows\system32\dllcache\services.exe
2009-11-16 09:53 . 2009-02-09 10:22 709632 -c----w- c:\windows\system32\dllcache\ntdll.dll
2009-11-16 09:53 . 2009-02-09 10:22 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2009-11-16 09:53 . 2009-06-21 22:07 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2009-11-16 09:51 . 2009-07-10 13:42 1315328 -c----w- c:\windows\system32\dllcache\msoe.dll
2009-11-16 09:50 . 2008-04-11 18:51 683520 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2009-11-16 09:43 . 2009-08-04 17:07 2138112 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2009-11-16 09:43 . 2009-08-04 17:07 2059904 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe
2009-11-16 09:43 . 2009-08-04 17:07 2182528 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2009-11-16 09:43 . 2009-08-04 17:07 2017792 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2009-11-16 09:42 . 2008-04-21 21:28 216576 -c----w- c:\windows\system32\dllcache\wordpad.exe
2009-11-16 09:31 . 2009-06-05 07:46 655872 -c----w- c:\windows\system32\dllcache\mstscax.dll
2009-11-16 09:31 . 2009-03-08 03:33 420352 -c--a-w- c:\windows\system32\dllcache\vbscript.dll
2009-11-16 09:02 . 2009-11-16 13:16 -------- d-----w- c:\windows\system32\wbem\Repository.001
2009-11-15 22:30 . 2005-10-20 22:34 992768 ----a-w- c:\windows\system32\esent(6).dll
2009-11-15 22:30 . 2005-10-20 22:34 992768 ----a-w- c:\windows\system32\esent(5).dll
2009-11-15 22:30 . 2005-10-20 22:30 1083904 ----a-w- c:\windows\system32\esent(4).dll
2009-11-15 22:28 . 2009-07-31 04:59 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2009-11-15 22:16 . 2008-12-16 12:50 351232 ----a-w- c:\windows\system32\winhttp.dll
2009-11-15 22:16 . 2004-08-17 14:49 351232 ----a-w- c:\windows\system32\winhttp(5).dll
2009-11-15 22:16 . 2004-08-17 14:49 18944 ----a-w- c:\windows\system32\qmgrprxy.dll
2009-11-15 22:16 . 2004-07-01 22:10 331776 ----a-w- c:\windows\system32\winhttp(6).dll
2009-11-15 04:26 . 2002-09-23 12:00 14848 -c--a-w- c:\windows\system32\dllcache\register.exe
2009-11-15 04:25 . 2002-09-23 12:00 18944 -c--a-w- c:\windows\system32\dllcache\cprofile.exe
2009-11-15 04:23 . 2004-08-17 14:49 45568 ----a-w- c:\windows\system32\safrslv.dll
2009-11-15 01:26 . 2004-08-03 22:07 52864 ----a-w- c:\windows\system32\drivers\dmusic.sys
2009-11-15 01:26 . 2006-06-14 08:47 6400 ----a-w- c:\windows\system32\drivers\splitter.sys
2009-11-15 01:26 . 2004-08-17 14:43 58240 ----a-w- c:\windows\system32\drivers\redbook.sys
2009-11-15 01:25 . 2004-08-17 14:49 40840 ----a-w- c:\windows\system32\drivers\termdd.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-07 16:09 . 2009-01-23 21:44 -------- d-----w- c:\program files\Vuze
2009-12-06 21:47 . 2009-07-19 16:15 -------- d-----w- c:\program files\trend micro
2009-12-03 17:34 . 2009-01-23 15:46 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-11-28 13:42 . 2009-04-26 14:14 -------- d-----w- c:\program files\Common Files\Nokia
2009-11-28 13:41 . 2009-03-12 13:50 -------- d-----w- c:\program files\Nokia
2009-11-25 16:16 . 2009-05-23 12:29 -------- d-----w- c:\program files\Spyware Terminator
2009-11-24 23:54 . 2009-01-23 17:48 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-24 23:51 . 2009-01-23 17:48 93424 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-11-24 23:50 . 2009-01-23 17:48 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-11-24 23:50 . 2009-01-23 17:48 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-11-24 23:50 . 2009-01-23 19:03 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-11-24 23:49 . 2009-01-23 17:48 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-24 23:48 . 2009-01-23 17:48 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-24 23:47 . 2009-01-23 17:48 27408 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-11-24 23:47 . 2009-01-23 17:48 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-21 17:46 . 2009-11-07 19:51 -------- d-----w- c:\program files\DivX
2009-11-21 17:44 . 2009-11-07 19:51 -------- d-----w- c:\program files\Common Files\DivX Shared
2009-11-21 13:14 . 2009-10-31 23:08 -------- d-----w- c:\program files\Wise Registry Cleaner
2009-11-19 07:47 . 2002-09-23 12:00 89350 ----a-w- c:\windows\system32\perfc005.dat
2009-11-19 07:47 . 2002-09-23 12:00 456402 ----a-w- c:\windows\system32\perfh005.dat
2009-11-18 11:54 . 2009-01-23 20:27 -------- d-----w- c:\program files\MSBuild
2009-11-16 13:03 . 2009-01-23 15:33 86327 ----a-w- c:\windows\PCHealth\HelpCtr\OfflineCache\index.dat
2009-11-16 13:03 . 2009-01-23 15:33 2724 ----a-w- c:\windows\PCHealth\HelpCtr\PackageStore\SkuStore.bin
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\WYG5NDBZ.DAT
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\3T737LBN.DAT
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\QGA2S4N5.DAT
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\JJRJHBBP.DAT
2009-11-15 04:24 . 2009-11-15 04:24 2678 ----a-w- c:\windows\java\Packages\Data\DZN3ZBX7.DAT
2009-11-15 04:22 . 2009-01-23 15:31 22916 ----a-w- c:\windows\system32\emptyregdb.dat
2009-11-14 18:54 . 2009-04-02 12:45 -------- d-----w- c:\program files\CDBurnerXP
2009-11-09 20:49 . 2009-01-23 23:29 -------- d-----w- c:\program files\ASUS
2009-11-09 20:31 . 2009-01-23 20:18 -------- d-----w- c:\program files\Windows Media Connect 2
2009-11-09 20:08 . 2009-01-23 15:46 -------- d-----w- c:\program files\AMD
2009-11-09 17:10 . 2009-10-31 21:12 -------- d-----w- c:\program files\SpeedFan
2009-11-08 20:45 . 2009-02-21 21:17 -------- d-----w- c:\program files\Realtek AC97
2009-11-08 13:56 . 2009-11-03 21:04 -------- d-----w- c:\program files\USB Disk Win98 Driver
2009-11-08 10:41 . 2009-02-19 18:47 -------- d-----w- c:\program files\OO Software
2009-11-08 10:37 . 2009-01-24 09:29 -------- d-----w- c:\program files\Sandboxie
2009-11-08 09:52 . 2009-02-18 19:30 -------- d-----w- c:\program files\Uniblue
2009-11-05 18:57 . 2009-11-01 16:51 -------- d-----w- c:\program files\Prime95
2009-11-02 16:06 . 2009-11-02 16:06 1462272 ----a-w- c:\windows\system32\cpuz147.exe
2009-11-01 19:50 . 2009-11-01 19:50 -------- d-----w- c:\program files\SiSoftware
2009-11-01 19:47 . 2009-10-25 21:03 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-11-01 15:13 . 2009-11-01 15:13 -------- d-----w- c:\program files\cpuz_152
2009-11-01 14:35 . 2009-11-01 14:35 -------- d-----w- c:\program files\A64MemFreq11
2009-11-01 11:42 . 2009-10-25 21:04 -------- d-----w- c:\program files\SUPERAntiSpyware
2009-11-01 11:33 . 2009-10-25 21:37 -------- d-----w- c:\program files\Net Meter Pro
2009-10-31 23:05 . 2009-10-31 23:05 -------- d-----w- c:\program files\MemSet
2009-10-31 23:02 . 2009-10-31 23:02 -------- d-----w- c:\program files\OCCT
2009-10-31 22:15 . 2009-10-31 22:15 -------- d-----w- c:\program files\oZone3D
2009-10-30 21:04 . 2009-01-23 18:29 7816 ----a-w- c:\windows\system32\d3d9caps.dat
2009-10-30 21:02 . 2009-10-30 21:02 552 ----a-w- c:\windows\system32\d3d8caps.dat
2009-10-25 21:36 . 2009-10-25 21:34 -------- d-----w- c:\program files\CPU Speed Pro
2009-10-25 19:11 . 2009-10-25 19:11 -------- d-----w- c:\program files\DVD Shrink
2009-10-11 18:11 . 2009-10-11 18:08 -------- d-----w- c:\program files\ICQ6.5
2009-10-06 10:52 . 2009-03-12 13:50 91136 ----a-w- c:\windows\system32\nmwcdcls.dll
2009-10-01 09:29 . 2009-10-23 06:56 195440 ------w- c:\windows\system32\MpSigStub.exe
2009-09-25 16:42 . 2009-11-07 19:51 9464 ------w- c:\windows\system32\drivers\cdralw2k.sys
2009-09-25 16:42 . 2009-11-07 19:51 9336 ------w- c:\windows\system32\drivers\cdr4_xp.sys
2009-09-25 16:42 . 2009-11-07 19:51 43528 ------w- c:\windows\system32\drivers\PxHelp20.sys
2009-09-25 16:42 . 2009-11-07 19:51 120056 ------w- c:\windows\system32\pxcpyi64.exe
2009-09-25 16:42 . 2009-11-07 19:51 118520 ------w- c:\windows\system32\pxinsi64.exe
2009-09-25 16:42 . 2009-11-07 19:51 129784 ------w- c:\windows\system32\pxafs.dll
2009-09-25 16:41 . 2009-09-25 16:41 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-09-11 23:34 . 2009-09-11 23:34 1254656 ----a-w- c:\windows\system32\ooscrsav.scr
2009-09-11 23:33 . 2009-09-11 23:33 199936 ----a-w- c:\windows\system32\oodbs.exe
2009-09-11 23:29 . 2009-09-11 23:29 546048 ----a-w- c:\windows\system32\oodssrs.dll
2009-09-11 23:29 . 2009-09-11 23:29 9984 ----a-w- c:\windows\system32\oodbsrs.dll
2009-09-11 14:35 . 2002-09-23 12:00 133632 ----a-w- c:\windows\system32\msv1_0.dll
2009-07-17 17:34 . 2009-07-17 12:59 30001184 --sha-w- c:\windows\system32\drivers\fidbox.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-09-17 13574144]
"AMD_Display"="c:\program files\AMD\AMD Power Monitor\AMD_PwrMon.exe" [2009-11-08 1449984]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2004-08-17 15360]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"tscuninstall"="c:\windows\system32\tscupgrd.exe" [2004-08-17 44544]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 14:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ PDBoot.exe\0autocheck autochk *\0autocheck smrgdf c:\documents and settings\kája\Data aplikací\iolo\\0OODBS
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Anti Trojan Elite
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer [X]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2004-08-17 14:49 15360 ------w- c:\windows\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2008-03-25 20:27 49152 ----a-w- c:\program files\HP\HP Software Update\hpwuSchd2.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
2008-08-20 09:54 150016 ----a-w- c:\program files\HP\Digital Imaging\bin\HpqSRmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2009-11-12 15:33 141600 ----a-w- c:\program files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2]
2009-10-27 14:10 401728 ----a-w- c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2008-09-17 22:55 13574144 ----a-w- c:\windows\system32\nvcpl.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2008-09-17 22:55 86016 ----a-w- c:\windows\system32\nvmctray.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
2009-11-11 09:57 1451520 ----a-w- c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
2007-04-16 14:28 577536 ----a-w- c:\windows\soundman.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartupFaster]
2008-09-07 18:36 1402080 ----a-w- c:\program files\Startup Faster\StartupLoader.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
2009-10-12 20:24 2000112 ----a-w- c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uniblue RegistryBooster 2]
2008-07-08 14:05 1923352 ----a-w- c:\program files\Uniblue\RegistryBooster 2\RegistryBooster.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Vuze\\Azureus.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe"=
"c:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite 2009.SP2\\RpcAgentSrv.exe"=
"c:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite 2009.SP2\\WNt500x86\\RpcSandraSrv.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\Nokia\\Nokia Ovi Suite\\NokiaOviSuite.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"=
"c:\\Program Files\\Common Files\\HP\\Digital Imaging\\bin\\hpqPhotoCrm.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqsudi.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpsapp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpse.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgplgtupl.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgpc01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgm.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgh.exe"=
"c:\\Program Files\\HP\\HP Software Update\\hpwucli.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Smart Web Printing\\SmartWebPrintExe.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
"AllowInboundEchoRequest"= 1 (0x1)
R0 hotcore2;hotcore2;c:\windows\system32\drivers\hotcore2.sys [24.1.2009 9:11 30808]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [23.1.2009 18:48 114768]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [12.10.2009 21:24 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [12.10.2009 21:24 74480]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [23.1.2009 20:03 20560]
R2 ioloFileInfoList;iolo FileInfoList Service;c:\program files\iolo\Common\Lib\ioloServiceManager.exe [13.7.2009 10:38 592232]
R2 ioloSystemService;iolo System Service;c:\program files\iolo\Common\Lib\ioloServiceManager.exe [13.7.2009 10:38 592232]
R3 SbieDrv;SbieDrv;c:\program files\Sandboxie\SbieDrv.sys [30.9.2009 10:15 116736]
S1 TVicPort64;TVicPort64;\??\c:\windows\SysWOW64\drivers\TVicPort64.sys --> c:\windows\SysWOW64\drivers\TVicPort64.sys [?]
S2 ATE_PROCMON;ATE_PROCMON;\??\c:\program files\Anti Trojan Elite\ATEPMon.sys --> c:\program files\Anti Trojan Elite\ATEPMon.sys [?]
S3 BTCAMDRV;Mobiola Web Camera driver;c:\windows\system32\drivers\BTCamDrv.sys [16.5.2009 11:17 219264]
S3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [17.6.2009 13:20 12648]
S3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\program files\SiSoftware\SiSoftware Sandra Lite 2009.SP2\RpcAgentSrv.exe [1.11.2009 20:50 98488]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [12.10.2009 21:24 7408]
--- Ostatní služby/ovladače v paměti ---
*Deregistered* - mchInjDrv
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper REG_MULTI_SZ getPlusHelper
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
LSP: %SYSTEMROOT%\system32\nvappfilter.dll
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDow ... ab_nvd.cab
FF - ProfilePath - c:\documents and settings\kája\Data aplikací\Mozilla\Firefox\Profiles\am89cmnq.default\
FF - prefs.js: browser.startup.homepage - seznam.cz
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBook.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBookDB.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpNeoLogger.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSaturn.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartSelect.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartWebPrinting.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSWPOperation.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPLogging.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTC.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTL.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXREStub.dll
FF - component: c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\components\FirefoxExtension.dll
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\plugins\nphpclipbook.dll
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
.
------- Asociace souborů -------
.
JSEFile=NOTEPAD.EXE %1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
Notify-dimsntfy - (no file)
AddRemove-Capture Setup - c:\program files\Capture\DeIsL1.isu -cc:\program files\Capture\_ISREG32.DLL
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-07 18:56
Windows 5.1.2600 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1409082233-1897051121-682003330-1003\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
"OODEFRAG11.00.00.01WORKSTATION"="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"
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
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(732)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
- - - - - - - > 'lsass.exe'(788)
c:\windows\system32\nvappfilter.dll
- - - - - - - > 'explorer.exe'(3756)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
c:\program files\CDBurnerXP\NMSAccessU.exe
c:\windows\system32\nvsvc32.exe
c:\program files\OO Software\Defrag\oodag.exe
c:\program files\OO Software\CleverCache\ooccag.exe
c:\program files\Raxco\PerfectDisk10\PDAgent.exe
c:\program files\Sandboxie\SbieSvc.exe
c:\windows\system32\SearchIndexer.exe
c:\windows\system32\SearchProtocolHost.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\program files\Raxco\PerfectDisk10\PDEngine.exe
c:\program files\Raxco\PerfectDisk10\PDAgentS1.exe
c:\program files\Raxco\PerfectDisk10\PerfectDisk.exe
c:\windows\system32\SearchFilterHost.exe
.
**************************************************************************
.
Celkový čas: 2009-12-07 18:59 - počítač byl restartován
ComboFix-quarantined-files.txt 2009-12-07 17:59
Před spuštěním: Volných bajtů: 32 330 199 040
Po spuštění: Volných bajtů: 32 344 530 944
Current=1 Default=1 Failed=0 LastKnownGood=9 Sets=1,2,3,4,5,6,7,8,9
- - End Of File - - 2B45FCF5FDC1E833D63D46C95D3DECB0
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: prosím o kotrolu logu
Odinstaluj si Anti-Trojan Elite.
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok).
Zkopíruj do něj následující celý text označený zeleně:
File::
c:\windows\SysWOW64\drivers\TVicPort64.sys
c:\program files\Anti Trojan Elite\ATEPMon.sys
c:\windows\system32\d3d9caps.dat
c:\windows\system32\d3d8caps.dat
c:\windows\system32\emptyregdb.dat
Folder::
C:\Program Files\AskBarDis
c:\program files\Capture
c:\program files\Anti Trojan Elite
Driver::
mchInjDrv
TVicPort64;TVicPort64
TVicPort64
ATE_PROCMON;ATE_PROCMON
ATE_PROCMON
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.

- Automaticky se spustí ComboFix, oprava může trvat i déle než 10 minut. ! Nech ComboFix dokončit svou práci !
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT a popiš chování počítače
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok).
Zkopíruj do něj následující celý text označený zeleně:
File::
c:\windows\SysWOW64\drivers\TVicPort64.sys
c:\program files\Anti Trojan Elite\ATEPMon.sys
c:\windows\system32\d3d9caps.dat
c:\windows\system32\d3d8caps.dat
c:\windows\system32\emptyregdb.dat
Folder::
C:\Program Files\AskBarDis
c:\program files\Capture
c:\program files\Anti Trojan Elite
Driver::
mchInjDrv
TVicPort64;TVicPort64
TVicPort64
ATE_PROCMON;ATE_PROCMON
ATE_PROCMON
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.

- Automaticky se spustí ComboFix, oprava může trvat i déle než 10 minut. ! Nech ComboFix dokončit svou práci !
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT a popiš chování počítače
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: prosím o kotrolu logu
nemůžu najít odinstalační soubor toho antitrojana.
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: prosím o kotrolu logu
Není ani ve složce: c:\program files\Anti Trojan Elite ?
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: prosím o kotrolu logu
nei,já mám takovej pocit,že jsem ho odinstaloval,tak jestli to není nějakej zbytek.
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 20 hostů