Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:33:40, on 24.1.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\System32\svchost.exe
C:\QIP Infium JadrisPack\infium.exe
C:\Program Files\SpeedFan\speedfan.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://update.microsoft.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: TorrentMan Toolbar - {7c5c0f58-e061-457d-9033-77307f5ed00c} - C:\Program Files\TorrentMan\tbTor1.dll
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_1.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: TorrentMan Toolbar - {7c5c0f58-e061-457d-9033-77307f5ed00c} - C:\Program Files\TorrentMan\tbTor1.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_1.dll
O3 - Toolbar: TorrentMan Toolbar - {7c5c0f58-e061-457d-9033-77307f5ed00c} - C:\Program Files\TorrentMan\tbTor1.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_1.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\RunOnce: [NSSInstallation] C:\Program Files\DivX\Symantec\scstubinstaller.exe /runonce
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - HKCU\..\RunOnce: [WiseStubReboot] MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I "C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MSI" TRANSFORMS="C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MST" WISE_SETUP_EXE_PATH="c:\nvidia\displaydriver\190.62\english\PhysX_9.09.0814_SystemSoftware.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
--
End of file - 6396 bytes
Prosim o kontrolu logu
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Prosim o kontrolu logu
Odinstaluj si:
ICQ6Toolbar
TorrentMan Toolbar
BS Player Toolbar
Ask.com (Ask Toolbar)
Až budeš mít, dej mi sem nový log z HijackThis.
ICQ6Toolbar
TorrentMan Toolbar
BS Player Toolbar
Ask.com (Ask Toolbar)
Až budeš mít, dej mi sem nový log z HijackThis.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: Prosim o kontrolu logu
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:51:10, on 24.1.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\QIP Infium JadrisPack\infium.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Opera\Opera.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://update.microsoft.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - {7c5c0f58-e061-457d-9033-77307f5ed00c} - (no file)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - HKCU\..\RunOnce: [WiseStubReboot] MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I "C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MSI" TRANSFORMS="C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MST" WISE_SETUP_EXE_PATH="c:\nvidia\displaydriver\190.62\english\PhysX_9.09.0814_SystemSoftware.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
--
End of file - 5175 bytes
Scan saved at 15:51:10, on 24.1.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\QIP Infium JadrisPack\infium.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Opera\Opera.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://update.microsoft.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - {7c5c0f58-e061-457d-9033-77307f5ed00c} - (no file)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - HKCU\..\RunOnce: [WiseStubReboot] MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I "C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MSI" TRANSFORMS="C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MST" WISE_SETUP_EXE_PATH="c:\nvidia\displaydriver\190.62\english\PhysX_9.09.0814_SystemSoftware.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
--
End of file - 5175 bytes
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Prosim o kontrolu logu
Nastav si výchozí stránku na něco jiné, než "Start.icq". Třeba Seznam, Centrum, Atlas....
Spusť HJT (HijackThis), vypni prohlížeče, odpoj se od internetu a fixni (spustit HJT, "Do a system scan only",
zatrhnout políčko před hodnotou, zmáčknout "Fix checked" a poté "Ano"):
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://update.microsoft.com/
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - {7c5c0f58-e061-457d-9033-77307f5ed00c} - (no file)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
*****************************************************************************************************************************************
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Spusť HJT (HijackThis), vypni prohlížeče, odpoj se od internetu a fixni (spustit HJT, "Do a system scan only",
zatrhnout políčko před hodnotou, zmáčknout "Fix checked" a poté "Ano"):
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://update.microsoft.com/
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - {7c5c0f58-e061-457d-9033-77307f5ed00c} - (no file)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
*****************************************************************************************************************************************
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: Prosim o kontrolu logu
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3626
Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180
24.1.2009 16:37:41
mbam-log-2009-01-24 (16-37-41).txt
Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 104091
Uplynulý čas: 4 minute(s), 42 second(s)
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 0
Infikované adresáře: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované datové položky registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)
Verze databáze: 3626
Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180
24.1.2009 16:37:41
mbam-log-2009-01-24 (16-37-41).txt
Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 104091
Uplynulý čas: 4 minute(s), 42 second(s)
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 0
Infikované adresáře: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované datové položky registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Prosim o kontrolu logu
Vypni rezidentní štít antiviru (pokud máš tak i antispyware).
Stáhni si ComboFix (by sUBs)
nebo ComboFix (subs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Stáhni si ComboFix (by sUBs)
nebo ComboFix (subs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: Prosim o kontrolu logu
ComboFix 10-01-23.06 - zoltan 24.01.2009 18:46:38.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.2046.1556 [GMT 1:00]
Spuštěný z: c:\documents and settings\zoltan\Plocha\ComboFix.exe
AV: avast! antivirus 4.8.1368 [VPS 100117-1] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\ieuinit.inf
c:\windows\system32\SIntf16.dll
.
((((((((((((((((((((((((( Soubory vytvořené od 2008-12-24 do 2009-01-24 )))))))))))))))))))))))))))))))
.
2010-01-19 14:00 . 2004-08-03 22:08 26496 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2010-01-16 12:24 . 2010-01-16 12:24 -------- d-----w- c:\program files\VDOWNLOADER
2010-01-11 13:38 . 2010-01-14 15:13 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
2010-01-11 10:21 . 2010-01-11 10:21 21840 ----a-w- c:\windows\system32\SIntfNT.dll
2010-01-11 10:21 . 2010-01-11 10:21 17212 ----a-w- c:\windows\system32\SIntf32.dll
2010-01-11 10:21 . 2010-01-11 13:38 35302 ----a-w- c:\windows\DIIUnin.dat
2010-01-11 10:21 . 2010-01-11 10:21 94208 ----a-w- c:\windows\DIIUnin.exe
2010-01-11 10:21 . 2010-01-11 10:21 2829 ----a-w- c:\windows\DIIUnin.pif
2010-01-11 10:20 . 2010-01-16 11:47 -------- d-----w- c:\program files\Diablo II
2010-01-05 14:57 . 2010-01-05 15:05 -------- d-----w- c:\program files\Nero
2010-01-05 14:57 . 2010-01-05 15:06 -------- d-----w- c:\program files\Common Files\Nero
2009-12-27 01:30 . 2009-12-27 01:30 -------- d-----w- c:\program files\GamePark
2009-12-27 01:06 . 2009-12-27 01:06 -------- d-----w- c:\program files\Activision
2009-12-25 19:25 . 2009-01-24 09:42 -------- d-----w- c:\program files\SpeedFan
2009-12-25 19:08 . 2009-12-25 19:08 -------- d-----w- c:\program files\AGEIA Technologies
2009-12-25 19:08 . 2009-12-25 19:08 -------- d-----w- c:\windows\system32\AGEIA
2009-12-25 11:53 . 2009-12-25 11:53 -------- d-----w- c:\program files\Common Files\DirectX
2009-12-25 11:51 . 2009-12-25 11:51 -------- d-----w- c:\program files\EA GAMES
2009-12-24 17:33 . 2009-12-24 17:33 2488 ----a-w- c:\windows\system32\ealregsnapshot1.reg
2009-12-24 02:03 . 2009-12-24 02:03 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-12-24 02:02 . 2009-12-24 02:02 -------- d-----w- c:\program files\NVIDIA Corporation
2009-12-24 02:01 . 2009-12-24 02:01 -------- d-----w- C:\NVIDIA
2009-12-24 01:08 . 2009-12-24 01:11 -------- d-----w- c:\program files\Google
2009-12-24 01:08 . 2009-01-24 10:21 -------- d-----w- c:\program files\DivX
2009-12-24 01:08 . 2009-01-24 10:20 -------- d-----w- c:\program files\Common Files\DivX Shared
2009-12-23 13:42 . 2009-12-23 13:42 -------- d-----w- C:\ATI
2009-12-20 18:49 . 2009-12-20 20:06 -------- d-----w- c:\program files\AIMP2
2009-12-13 10:49 . 2009-12-13 10:49 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2009-12-09 20:30 . 2009-12-09 20:30 -------- d-----w- c:\program files\Opera
2009-12-08 14:38 . 2009-12-08 14:42 -------- d-----w- c:\program files\Valve
2009-12-05 23:14 . 2009-12-05 23:14 -------- d-----w- c:\windows\system32\LogFiles
2009-12-02 21:25 . 2009-12-02 21:25 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-12-02 21:23 . 2009-12-02 21:23 -------- d-----w- c:\program files\Common Files\Skype
2009-12-02 21:23 . 2009-12-02 21:24 -------- d-----r- c:\program files\Skype
2009-12-01 21:53 . 2009-12-01 21:53 -------- d-----w- c:\program files\sonak
2009-11-29 17:12 . 2009-11-29 17:12 -------- d-----w- c:\program files\OpenOffice.org 3
2009-11-29 16:58 . 2009-11-29 16:58 -------- d-----w- c:\program files\edu-learning
2009-11-23 07:23 . 2009-11-23 07:23 -------- d--h--w- c:\windows\PIF
2009-11-22 13:52 . 2009-11-22 13:52 -------- d-----w- c:\program files\Uniblue
2009-11-21 20:05 . 2009-11-21 20:05 -------- d-----w- c:\program files\Webteh
2009-11-19 18:45 . 2009-11-19 18:45 -------- d-----w- C:\ProgramData
2009-11-19 18:44 . 2009-11-19 18:44 -------- d-----w- c:\program files\Electronic Arts
2009-11-19 18:33 . 2009-11-19 18:33 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2009-11-19 18:33 . 2009-11-19 18:33 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-11-19 18:33 . 2009-11-19 18:33 -------- d-----w- c:\program files\DAEMON Tools Lite
2009-11-18 20:19 . 2009-11-18 20:20 -------- d-----w- c:\program files\BitLord
2009-11-18 19:23 . 2009-11-18 19:23 0 ----a-w- c:\windows\nsreg.dat
2009-11-18 19:17 . 2009-11-26 06:35 -------- d-----w- C:\QIP Infium JadrisPack
2009-11-18 19:16 . 2009-11-24 23:48 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-18 19:16 . 2009-11-24 23:49 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-18 19:16 . 2009-11-24 23:47 27408 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-11-18 19:16 . 2009-11-24 23:50 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-11-18 19:16 . 2009-11-24 23:50 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-11-18 19:16 . 2009-11-24 23:47 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-18 19:16 . 2009-11-24 23:51 93424 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-11-18 19:16 . 2009-11-24 23:50 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-11-18 19:15 . 2009-11-24 23:54 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-18 19:15 . 2003-03-18 21:20 1060864 ----a-w- c:\windows\system32\MFC71.dll
2009-11-18 19:15 . 2003-03-18 20:14 499712 ----a-w- c:\windows\system32\MSVCP71.dll
2009-11-18 19:15 . 2003-02-21 04:42 348160 ----a-w- c:\windows\system32\MSVCR71.dll
2009-11-18 19:15 . 2009-11-18 19:15 -------- d-----w- c:\program files\Alwil Software
2009-11-18 19:10 . 2009-11-18 19:10 -------- d-----w- c:\windows\system32\Lang
2009-11-18 19:06 . 2006-08-15 05:09 83200 ----a-r- c:\windows\system32\drivers\Rtenicxp.sys
2009-11-18 19:06 . 2009-11-18 19:06 -------- d-----w- c:\windows\OPTIONS
2009-11-18 19:04 . 2004-08-17 14:49 4096 -c--a-w- c:\windows\system32\dllcache\ksuser.dll
2009-11-18 19:01 . 2009-11-18 19:01 -------- d-----w- c:\windows\ASUSInstAll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-07 15:07 . 2009-01-24 15:31 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-07 15:07 . 2009-01-24 15:31 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-27 01:10 . 2004-07-17 09:36 163644 ----a-w- c:\windows\system32\drivers\secdrv.sys
2009-12-24 17:33 . 2009-11-18 18:52 -------- d-----w- c:\program files\Common Files\InstallShield
2009-12-24 17:30 . 2009-11-19 18:36 -------- d-----w- c:\program files\EA Sports
2009-12-23 13:43 . 2009-12-23 13:43 0 ----a-w- c:\windows\ativpsrm.bin
2009-12-23 13:43 . 2009-12-23 13:43 -------- d-----w- c:\program files\ATI
2009-11-25 03:50 . 2007-02-02 20:03 4463104 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2009-11-25 03:27 . 2009-11-18 18:53 446464 ----a-w- c:\windows\system32\ATIDEMGX.dll
2009-11-25 03:26 . 2007-02-02 20:03 300032 ----a-w- c:\windows\system32\ati2dvag.dll
2009-11-25 03:11 . 2007-02-02 19:57 208896 ----a-w- c:\windows\system32\atipdlxx.dll
2009-11-25 03:11 . 2007-02-02 19:56 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2009-11-25 03:10 . 2007-02-02 19:56 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2009-11-25 03:10 . 2007-02-02 19:56 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2009-11-25 03:10 . 2007-02-02 19:56 155648 ----a-w- c:\windows\system32\ati2evxx.dll
2009-11-25 03:09 . 2007-02-02 19:55 602112 ----a-w- c:\windows\system32\ati2evxx.exe
2009-11-25 03:07 . 2007-02-02 19:54 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2009-11-25 02:59 . 2009-11-18 18:53 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2009-11-25 02:59 . 2007-02-02 19:46 3538496 ----a-w- c:\windows\system32\ati3duag.dll
2009-11-25 02:44 . 2007-02-02 19:19 13533184 ----a-w- c:\windows\system32\atioglxx.dll
2009-11-25 02:43 . 2007-02-02 19:40 2142848 ----a-w- c:\windows\system32\ativvaxx.dll
2009-11-25 02:42 . 2009-12-23 13:43 887724 ----a-w- c:\windows\system32\ativva6x.dat
2009-11-25 02:42 . 2009-12-23 13:43 3 ----a-w- c:\windows\system32\ativva5x.dat
2009-11-25 02:26 . 2009-12-23 13:43 65024 ----a-w- c:\windows\system32\atimpc32.dll
2009-11-25 02:26 . 2009-12-23 13:43 65024 ----a-w- c:\windows\system32\amdpcom32.dll
2009-11-25 02:21 . 2007-02-02 19:27 565248 ----a-w- c:\windows\system32\atikvmag.dll
2009-11-25 02:20 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\aticalrt.dll
2009-11-25 02:20 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\aticalcl.dll
2009-11-25 02:19 . 2009-12-23 13:43 176128 ----a-w- c:\windows\system32\atiadlxx.dll
2009-11-25 02:18 . 2007-02-02 19:25 17408 ----a-w- c:\windows\system32\atitvo32.dll
2009-11-25 02:18 . 2009-12-23 13:43 3612672 ----a-w- c:\windows\system32\aticaldd.dll
2009-11-25 02:18 . 2007-02-02 19:35 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2009-11-25 02:17 . 2009-12-23 13:43 397312 ----a-w- c:\windows\system32\atiok3x2.dll
2009-11-25 02:12 . 2007-02-02 19:20 638976 ----a-w- c:\windows\system32\ati2cqag.dll
2009-11-18 19:06 . 2009-11-18 19:04 -------- d-----w- c:\program files\Realtek
2009-11-18 19:04 . 2009-11-18 19:04 315392 ----a-w- c:\windows\HideWin.exe
2009-11-18 18:57 . 2009-11-18 18:53 -------- d-----w- c:\program files\ATI Technologies
2009-11-18 18:51 . 2009-11-18 18:51 -------- d-----w- c:\program files\AMD
2009-11-18 18:01 . 2009-11-18 17:53 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-11-18 18:01 . 2009-11-18 17:53 2426 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2009-11-18 18:01 . 2009-11-18 17:53 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2009-11-18 17:54 . 2009-11-18 17:54 -------- d-----w- c:\program files\microsoft frontpage
2009-11-18 17:51 . 2009-11-18 17:51 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2009-11-14 00:49 . 2009-01-24 10:21 9464 ------w- c:\windows\system32\drivers\cdralw2k.sys
2009-11-14 00:49 . 2009-01-24 10:21 9336 ------w- c:\windows\system32\drivers\cdr4_xp.sys
2009-11-14 00:49 . 2009-01-24 10:21 43528 ------w- c:\windows\system32\drivers\PxHelp20.sys
2009-11-14 00:49 . 2009-01-24 10:21 120056 ------w- c:\windows\system32\pxcpyi64.exe
2009-11-14 00:49 . 2009-01-24 10:21 129784 ------w- c:\windows\system32\pxafs.dll
2009-11-14 00:49 . 2009-01-24 10:21 118520 ------w- c:\windows\system32\pxinsi64.exe
2009-11-14 00:47 . 2009-11-14 00:47 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ----a-w- c:\windows\system32\divx_xx0c.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ----a-w- c:\windows\system32\divx_xx07.dll
2009-11-14 00:47 . 2009-11-14 00:47 847872 ----a-w- c:\windows\system32\divx_xx0a.dll
2009-11-14 00:47 . 2009-11-14 00:47 843776 ----a-w- c:\windows\system32\divx_xx16.dll
2009-11-14 00:47 . 2009-11-14 00:47 839680 ----a-w- c:\windows\system32\divx_xx11.dll
2009-11-14 00:47 . 2009-11-14 00:47 696320 ----a-w- c:\windows\system32\DivX.dll
2009-10-22 15:59 . 2009-11-18 18:53 196565 ----a-w- c:\windows\system32\atiicdxx.dat
2009-08-14 12:36 . 2009-08-14 12:36 70936 ----a-w- c:\windows\system32\PhysXLoader.dll
2009-05-11 22:35 . 2009-12-23 13:43 118784 ----a-w- c:\windows\system32\atibtmon.exe
2009-02-18 18:55 . 2009-12-23 13:43 294912 ----a-w- c:\windows\system32\ATIODE.exe
2009-02-03 21:52 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\ATIODCLI.exe
2009-01-24 17:32 . 2009-01-21 10:13 -------- d-----w- c:\program files\DNA
2009-01-24 15:31 . 2009-01-24 15:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-01-24 13:20 . 2009-01-24 13:20 -------- d-----w- c:\program files\Norton Security Scan
2009-01-24 13:20 . 2009-01-24 13:20 -------- d-----w- c:\program files\NortonInstaller
2009-01-24 12:31 . 2009-01-24 12:31 -------- d-----w- c:\program files\Trend Micro
2009-01-23 22:04 . 2009-01-23 22:02 -------- d-----w- c:\program files\ICQ7.0
2009-01-23 22:03 . 2009-01-23 01:47 -------- d-----w- c:\program files\ICQ6Toolbar
2009-01-23 01:47 . 2009-11-18 18:51 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-01-21 11:27 . 2001-10-25 14:00 68916 ----a-w- c:\windows\system32\perfc005.dat
2009-01-21 11:27 . 2001-10-25 14:00 389938 ----a-w- c:\windows\system32\perfh005.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"EA Core"="c:\program files\Electronic Arts\EADM\Core.exe" [2009-04-29 3338240]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25623336]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2004-08-17 1667584]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2009-01-21 323392]
"ICQ"="c:\program files\ICQ7.0\ICQ.exe" [2010-01-12 133368]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"WiseStubReboot"="MSIEXEC" [X]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-04-12 16132608]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]
c:\documents and settings\zoltan\Nabˇdka Start\Programy\Po spuçtŘnˇ\
OpenOffice.org 3.0.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-1-15 393216]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\BitLord\\BitLord.exe"=
"c:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Valve\\hl.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\QIP Infium JadrisPack\\infium.exe"=
"c:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe"=
"c:\\Program Files\\EA GAMES\\Need for Speed Underground 2\\SPEED2.EXE"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\ICQ7.0\\ICQ.exe"=
"c:\\Program Files\\ICQ7.0\\aolload.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [18.11.2009 20:16 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [18.11.2009 20:16 20560]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [19.11.2009 19:33 691696]
S3 GarenaPEngine;GarenaPEngine;\??\c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp --> c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp [?]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys --> c:\windows\system32\drivers\nvhda32.sys [?]
.
Obsah adresáře 'Naplánované úlohy'
2009-01-24 c:\windows\Tasks\Norton Security Scan for zoltan.job
- c:\program files\Norton Security Scan\Engine\2.3.0.44\Nss.exe [2009-01-24 12:09]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files\ICQ7.0\ICQ.exe
FF - ProfilePath - c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... 2.0.0.0&q=
FF - component: c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
ActiveSetup-ccc-core-static - msiexec
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-24 18:49
Windows 5.1.2600 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\GarenaPEngine]
"ImagePath"="\??\c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(720)
c:\windows\system32\Ati2evxx.dll
.
Celkový čas: 2009-01-24 18:49:53
ComboFix-quarantined-files.txt 2009-01-24 17:49
Před spuštěním: Volných bajtů: 188 989 247 488
Po spuštění: Volných bajtů: 192 270 016 512
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
- - End Of File - - 058A4E04551A4AFC7A2850554C132B55
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.2046.1556 [GMT 1:00]
Spuštěný z: c:\documents and settings\zoltan\Plocha\ComboFix.exe
AV: avast! antivirus 4.8.1368 [VPS 100117-1] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\ieuinit.inf
c:\windows\system32\SIntf16.dll
.
((((((((((((((((((((((((( Soubory vytvořené od 2008-12-24 do 2009-01-24 )))))))))))))))))))))))))))))))
.
2010-01-19 14:00 . 2004-08-03 22:08 26496 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2010-01-16 12:24 . 2010-01-16 12:24 -------- d-----w- c:\program files\VDOWNLOADER
2010-01-11 13:38 . 2010-01-14 15:13 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
2010-01-11 10:21 . 2010-01-11 10:21 21840 ----a-w- c:\windows\system32\SIntfNT.dll
2010-01-11 10:21 . 2010-01-11 10:21 17212 ----a-w- c:\windows\system32\SIntf32.dll
2010-01-11 10:21 . 2010-01-11 13:38 35302 ----a-w- c:\windows\DIIUnin.dat
2010-01-11 10:21 . 2010-01-11 10:21 94208 ----a-w- c:\windows\DIIUnin.exe
2010-01-11 10:21 . 2010-01-11 10:21 2829 ----a-w- c:\windows\DIIUnin.pif
2010-01-11 10:20 . 2010-01-16 11:47 -------- d-----w- c:\program files\Diablo II
2010-01-05 14:57 . 2010-01-05 15:05 -------- d-----w- c:\program files\Nero
2010-01-05 14:57 . 2010-01-05 15:06 -------- d-----w- c:\program files\Common Files\Nero
2009-12-27 01:30 . 2009-12-27 01:30 -------- d-----w- c:\program files\GamePark
2009-12-27 01:06 . 2009-12-27 01:06 -------- d-----w- c:\program files\Activision
2009-12-25 19:25 . 2009-01-24 09:42 -------- d-----w- c:\program files\SpeedFan
2009-12-25 19:08 . 2009-12-25 19:08 -------- d-----w- c:\program files\AGEIA Technologies
2009-12-25 19:08 . 2009-12-25 19:08 -------- d-----w- c:\windows\system32\AGEIA
2009-12-25 11:53 . 2009-12-25 11:53 -------- d-----w- c:\program files\Common Files\DirectX
2009-12-25 11:51 . 2009-12-25 11:51 -------- d-----w- c:\program files\EA GAMES
2009-12-24 17:33 . 2009-12-24 17:33 2488 ----a-w- c:\windows\system32\ealregsnapshot1.reg
2009-12-24 02:03 . 2009-12-24 02:03 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-12-24 02:02 . 2009-12-24 02:02 -------- d-----w- c:\program files\NVIDIA Corporation
2009-12-24 02:01 . 2009-12-24 02:01 -------- d-----w- C:\NVIDIA
2009-12-24 01:08 . 2009-12-24 01:11 -------- d-----w- c:\program files\Google
2009-12-24 01:08 . 2009-01-24 10:21 -------- d-----w- c:\program files\DivX
2009-12-24 01:08 . 2009-01-24 10:20 -------- d-----w- c:\program files\Common Files\DivX Shared
2009-12-23 13:42 . 2009-12-23 13:42 -------- d-----w- C:\ATI
2009-12-20 18:49 . 2009-12-20 20:06 -------- d-----w- c:\program files\AIMP2
2009-12-13 10:49 . 2009-12-13 10:49 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2009-12-09 20:30 . 2009-12-09 20:30 -------- d-----w- c:\program files\Opera
2009-12-08 14:38 . 2009-12-08 14:42 -------- d-----w- c:\program files\Valve
2009-12-05 23:14 . 2009-12-05 23:14 -------- d-----w- c:\windows\system32\LogFiles
2009-12-02 21:25 . 2009-12-02 21:25 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-12-02 21:23 . 2009-12-02 21:23 -------- d-----w- c:\program files\Common Files\Skype
2009-12-02 21:23 . 2009-12-02 21:24 -------- d-----r- c:\program files\Skype
2009-12-01 21:53 . 2009-12-01 21:53 -------- d-----w- c:\program files\sonak
2009-11-29 17:12 . 2009-11-29 17:12 -------- d-----w- c:\program files\OpenOffice.org 3
2009-11-29 16:58 . 2009-11-29 16:58 -------- d-----w- c:\program files\edu-learning
2009-11-23 07:23 . 2009-11-23 07:23 -------- d--h--w- c:\windows\PIF
2009-11-22 13:52 . 2009-11-22 13:52 -------- d-----w- c:\program files\Uniblue
2009-11-21 20:05 . 2009-11-21 20:05 -------- d-----w- c:\program files\Webteh
2009-11-19 18:45 . 2009-11-19 18:45 -------- d-----w- C:\ProgramData
2009-11-19 18:44 . 2009-11-19 18:44 -------- d-----w- c:\program files\Electronic Arts
2009-11-19 18:33 . 2009-11-19 18:33 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2009-11-19 18:33 . 2009-11-19 18:33 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-11-19 18:33 . 2009-11-19 18:33 -------- d-----w- c:\program files\DAEMON Tools Lite
2009-11-18 20:19 . 2009-11-18 20:20 -------- d-----w- c:\program files\BitLord
2009-11-18 19:23 . 2009-11-18 19:23 0 ----a-w- c:\windows\nsreg.dat
2009-11-18 19:17 . 2009-11-26 06:35 -------- d-----w- C:\QIP Infium JadrisPack
2009-11-18 19:16 . 2009-11-24 23:48 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-18 19:16 . 2009-11-24 23:49 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-18 19:16 . 2009-11-24 23:47 27408 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-11-18 19:16 . 2009-11-24 23:50 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-11-18 19:16 . 2009-11-24 23:50 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-11-18 19:16 . 2009-11-24 23:47 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-18 19:16 . 2009-11-24 23:51 93424 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-11-18 19:16 . 2009-11-24 23:50 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-11-18 19:15 . 2009-11-24 23:54 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-18 19:15 . 2003-03-18 21:20 1060864 ----a-w- c:\windows\system32\MFC71.dll
2009-11-18 19:15 . 2003-03-18 20:14 499712 ----a-w- c:\windows\system32\MSVCP71.dll
2009-11-18 19:15 . 2003-02-21 04:42 348160 ----a-w- c:\windows\system32\MSVCR71.dll
2009-11-18 19:15 . 2009-11-18 19:15 -------- d-----w- c:\program files\Alwil Software
2009-11-18 19:10 . 2009-11-18 19:10 -------- d-----w- c:\windows\system32\Lang
2009-11-18 19:06 . 2006-08-15 05:09 83200 ----a-r- c:\windows\system32\drivers\Rtenicxp.sys
2009-11-18 19:06 . 2009-11-18 19:06 -------- d-----w- c:\windows\OPTIONS
2009-11-18 19:04 . 2004-08-17 14:49 4096 -c--a-w- c:\windows\system32\dllcache\ksuser.dll
2009-11-18 19:01 . 2009-11-18 19:01 -------- d-----w- c:\windows\ASUSInstAll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-07 15:07 . 2009-01-24 15:31 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-07 15:07 . 2009-01-24 15:31 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-27 01:10 . 2004-07-17 09:36 163644 ----a-w- c:\windows\system32\drivers\secdrv.sys
2009-12-24 17:33 . 2009-11-18 18:52 -------- d-----w- c:\program files\Common Files\InstallShield
2009-12-24 17:30 . 2009-11-19 18:36 -------- d-----w- c:\program files\EA Sports
2009-12-23 13:43 . 2009-12-23 13:43 0 ----a-w- c:\windows\ativpsrm.bin
2009-12-23 13:43 . 2009-12-23 13:43 -------- d-----w- c:\program files\ATI
2009-11-25 03:50 . 2007-02-02 20:03 4463104 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2009-11-25 03:27 . 2009-11-18 18:53 446464 ----a-w- c:\windows\system32\ATIDEMGX.dll
2009-11-25 03:26 . 2007-02-02 20:03 300032 ----a-w- c:\windows\system32\ati2dvag.dll
2009-11-25 03:11 . 2007-02-02 19:57 208896 ----a-w- c:\windows\system32\atipdlxx.dll
2009-11-25 03:11 . 2007-02-02 19:56 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2009-11-25 03:10 . 2007-02-02 19:56 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2009-11-25 03:10 . 2007-02-02 19:56 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2009-11-25 03:10 . 2007-02-02 19:56 155648 ----a-w- c:\windows\system32\ati2evxx.dll
2009-11-25 03:09 . 2007-02-02 19:55 602112 ----a-w- c:\windows\system32\ati2evxx.exe
2009-11-25 03:07 . 2007-02-02 19:54 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2009-11-25 02:59 . 2009-11-18 18:53 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2009-11-25 02:59 . 2007-02-02 19:46 3538496 ----a-w- c:\windows\system32\ati3duag.dll
2009-11-25 02:44 . 2007-02-02 19:19 13533184 ----a-w- c:\windows\system32\atioglxx.dll
2009-11-25 02:43 . 2007-02-02 19:40 2142848 ----a-w- c:\windows\system32\ativvaxx.dll
2009-11-25 02:42 . 2009-12-23 13:43 887724 ----a-w- c:\windows\system32\ativva6x.dat
2009-11-25 02:42 . 2009-12-23 13:43 3 ----a-w- c:\windows\system32\ativva5x.dat
2009-11-25 02:26 . 2009-12-23 13:43 65024 ----a-w- c:\windows\system32\atimpc32.dll
2009-11-25 02:26 . 2009-12-23 13:43 65024 ----a-w- c:\windows\system32\amdpcom32.dll
2009-11-25 02:21 . 2007-02-02 19:27 565248 ----a-w- c:\windows\system32\atikvmag.dll
2009-11-25 02:20 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\aticalrt.dll
2009-11-25 02:20 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\aticalcl.dll
2009-11-25 02:19 . 2009-12-23 13:43 176128 ----a-w- c:\windows\system32\atiadlxx.dll
2009-11-25 02:18 . 2007-02-02 19:25 17408 ----a-w- c:\windows\system32\atitvo32.dll
2009-11-25 02:18 . 2009-12-23 13:43 3612672 ----a-w- c:\windows\system32\aticaldd.dll
2009-11-25 02:18 . 2007-02-02 19:35 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2009-11-25 02:17 . 2009-12-23 13:43 397312 ----a-w- c:\windows\system32\atiok3x2.dll
2009-11-25 02:12 . 2007-02-02 19:20 638976 ----a-w- c:\windows\system32\ati2cqag.dll
2009-11-18 19:06 . 2009-11-18 19:04 -------- d-----w- c:\program files\Realtek
2009-11-18 19:04 . 2009-11-18 19:04 315392 ----a-w- c:\windows\HideWin.exe
2009-11-18 18:57 . 2009-11-18 18:53 -------- d-----w- c:\program files\ATI Technologies
2009-11-18 18:51 . 2009-11-18 18:51 -------- d-----w- c:\program files\AMD
2009-11-18 18:01 . 2009-11-18 17:53 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-11-18 18:01 . 2009-11-18 17:53 2426 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2009-11-18 18:01 . 2009-11-18 17:53 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2009-11-18 17:54 . 2009-11-18 17:54 -------- d-----w- c:\program files\microsoft frontpage
2009-11-18 17:51 . 2009-11-18 17:51 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2009-11-14 00:49 . 2009-01-24 10:21 9464 ------w- c:\windows\system32\drivers\cdralw2k.sys
2009-11-14 00:49 . 2009-01-24 10:21 9336 ------w- c:\windows\system32\drivers\cdr4_xp.sys
2009-11-14 00:49 . 2009-01-24 10:21 43528 ------w- c:\windows\system32\drivers\PxHelp20.sys
2009-11-14 00:49 . 2009-01-24 10:21 120056 ------w- c:\windows\system32\pxcpyi64.exe
2009-11-14 00:49 . 2009-01-24 10:21 129784 ------w- c:\windows\system32\pxafs.dll
2009-11-14 00:49 . 2009-01-24 10:21 118520 ------w- c:\windows\system32\pxinsi64.exe
2009-11-14 00:47 . 2009-11-14 00:47 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ----a-w- c:\windows\system32\divx_xx0c.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ----a-w- c:\windows\system32\divx_xx07.dll
2009-11-14 00:47 . 2009-11-14 00:47 847872 ----a-w- c:\windows\system32\divx_xx0a.dll
2009-11-14 00:47 . 2009-11-14 00:47 843776 ----a-w- c:\windows\system32\divx_xx16.dll
2009-11-14 00:47 . 2009-11-14 00:47 839680 ----a-w- c:\windows\system32\divx_xx11.dll
2009-11-14 00:47 . 2009-11-14 00:47 696320 ----a-w- c:\windows\system32\DivX.dll
2009-10-22 15:59 . 2009-11-18 18:53 196565 ----a-w- c:\windows\system32\atiicdxx.dat
2009-08-14 12:36 . 2009-08-14 12:36 70936 ----a-w- c:\windows\system32\PhysXLoader.dll
2009-05-11 22:35 . 2009-12-23 13:43 118784 ----a-w- c:\windows\system32\atibtmon.exe
2009-02-18 18:55 . 2009-12-23 13:43 294912 ----a-w- c:\windows\system32\ATIODE.exe
2009-02-03 21:52 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\ATIODCLI.exe
2009-01-24 17:32 . 2009-01-21 10:13 -------- d-----w- c:\program files\DNA
2009-01-24 15:31 . 2009-01-24 15:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-01-24 13:20 . 2009-01-24 13:20 -------- d-----w- c:\program files\Norton Security Scan
2009-01-24 13:20 . 2009-01-24 13:20 -------- d-----w- c:\program files\NortonInstaller
2009-01-24 12:31 . 2009-01-24 12:31 -------- d-----w- c:\program files\Trend Micro
2009-01-23 22:04 . 2009-01-23 22:02 -------- d-----w- c:\program files\ICQ7.0
2009-01-23 22:03 . 2009-01-23 01:47 -------- d-----w- c:\program files\ICQ6Toolbar
2009-01-23 01:47 . 2009-11-18 18:51 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-01-21 11:27 . 2001-10-25 14:00 68916 ----a-w- c:\windows\system32\perfc005.dat
2009-01-21 11:27 . 2001-10-25 14:00 389938 ----a-w- c:\windows\system32\perfh005.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"EA Core"="c:\program files\Electronic Arts\EADM\Core.exe" [2009-04-29 3338240]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25623336]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2004-08-17 1667584]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2009-01-21 323392]
"ICQ"="c:\program files\ICQ7.0\ICQ.exe" [2010-01-12 133368]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"WiseStubReboot"="MSIEXEC" [X]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-04-12 16132608]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]
c:\documents and settings\zoltan\Nabˇdka Start\Programy\Po spuçtŘnˇ\
OpenOffice.org 3.0.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-1-15 393216]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\BitLord\\BitLord.exe"=
"c:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Valve\\hl.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\QIP Infium JadrisPack\\infium.exe"=
"c:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe"=
"c:\\Program Files\\EA GAMES\\Need for Speed Underground 2\\SPEED2.EXE"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\ICQ7.0\\ICQ.exe"=
"c:\\Program Files\\ICQ7.0\\aolload.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [18.11.2009 20:16 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [18.11.2009 20:16 20560]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [19.11.2009 19:33 691696]
S3 GarenaPEngine;GarenaPEngine;\??\c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp --> c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp [?]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys --> c:\windows\system32\drivers\nvhda32.sys [?]
.
Obsah adresáře 'Naplánované úlohy'
2009-01-24 c:\windows\Tasks\Norton Security Scan for zoltan.job
- c:\program files\Norton Security Scan\Engine\2.3.0.44\Nss.exe [2009-01-24 12:09]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files\ICQ7.0\ICQ.exe
FF - ProfilePath - c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... 2.0.0.0&q=
FF - component: c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
ActiveSetup-ccc-core-static - msiexec
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-24 18:49
Windows 5.1.2600 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\GarenaPEngine]
"ImagePath"="\??\c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(720)
c:\windows\system32\Ati2evxx.dll
.
Celkový čas: 2009-01-24 18:49:53
ComboFix-quarantined-files.txt 2009-01-24 17:49
Před spuštěním: Volných bajtů: 188 989 247 488
Po spuštění: Volných bajtů: 192 270 016 512
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
- - End Of File - - 058A4E04551A4AFC7A2850554C132B55
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Prosim o kontrolu logu
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok).
Zkopíruj do něj následující celý text označený zeleně:
File::
c:\windows\system32\ezsidmv.dat
c:\windows\system32\emptyregdb.dat
c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp
c:\windows\Tasks\Norton Security Scan for zoltan.job
c:\program files\Norton Security Scan\Engine\2.3.0.44\Nss.exe
c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
Folder::
c:\program files\DAEMON Tools Toolbar
c:\program files\Norton Security Scan
c:\program files\NortonInstaller
c:\program files\ICQ6Toolbar
C:\Program Files\Ask.com
C:\Program Files\BS_Player
C:\Program Files\TorrentMan
DDS::
uStart Page = hxxp://start.icq.com/
Firefox::
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... 2.0.0.0&q=
FF - component: c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
Driver::
GarenaPEngine;GarenaPEngine
GarenaPEngine
Registry::
[-HKEY_LOCAL_MACHINE\System\ControlSet001\Services\GarenaPEngine]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.

- Automaticky se spustí ComboFix, oprava může trvat i déle než 10 minut. ! Nech ComboFix dokončit svou práci !
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT a popiš chování počítače
Zkopíruj do něj následující celý text označený zeleně:
File::
c:\windows\system32\ezsidmv.dat
c:\windows\system32\emptyregdb.dat
c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp
c:\windows\Tasks\Norton Security Scan for zoltan.job
c:\program files\Norton Security Scan\Engine\2.3.0.44\Nss.exe
c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
Folder::
c:\program files\DAEMON Tools Toolbar
c:\program files\Norton Security Scan
c:\program files\NortonInstaller
c:\program files\ICQ6Toolbar
C:\Program Files\Ask.com
C:\Program Files\BS_Player
C:\Program Files\TorrentMan
DDS::
uStart Page = hxxp://start.icq.com/
Firefox::
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... 2.0.0.0&q=
FF - component: c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
Driver::
GarenaPEngine;GarenaPEngine
GarenaPEngine
Registry::
[-HKEY_LOCAL_MACHINE\System\ControlSet001\Services\GarenaPEngine]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.

- Automaticky se spustí ComboFix, oprava může trvat i déle než 10 minut. ! Nech ComboFix dokončit svou práci !
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT a popiš chování počítače
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: Prosim o kontrolu logu
combofix :)vysledek ComboFix 10-01-23.06 - zoltan 24.01.2009 19:21:31.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.2046.1594 [GMT 1:00]
Spuštěný z: c:\documents and settings\zoltan\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\zoltan\Plocha\CFScript.txt
AV: avast! antivirus 4.8.1368 [VPS 100117-1] *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FILE ::
"c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp"
"c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll"
"c:\program files\Norton Security Scan\Engine\2.3.0.44\Nss.exe"
"c:\windows\system32\emptyregdb.dat"
"c:\windows\system32\ezsidmv.dat"
"c:\windows\Tasks\Norton Security Scan for zoltan.job"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
c:\program files\DAEMON Tools Toolbar
c:\program files\DAEMON Tools Toolbar\_DTLite.xml
c:\program files\DAEMON Tools Toolbar\DTToolbar.dll
c:\program files\DAEMON Tools Toolbar\Resources\about.ico
c:\program files\DAEMON Tools Toolbar\Resources\AboutWindow.ico
c:\program files\DAEMON Tools Toolbar\Resources\accept.ico
c:\program files\DAEMON Tools Toolbar\Resources\AddRadioStation.ico
c:\program files\DAEMON Tools Toolbar\Resources\as.ico
c:\program files\DAEMON Tools Toolbar\Resources\as.png
c:\program files\DAEMON Tools Toolbar\Resources\astro.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_buy.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_download.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_feedback.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_forum.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_home.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_lite.ico
c:\program files\DAEMON Tools Toolbar\Resources\astroburn_site.ico
c:\program files\DAEMON Tools Toolbar\Resources\astroLite_16.ico
c:\program files\DAEMON Tools Toolbar\Resources\az.ico
c:\program files\DAEMON Tools Toolbar\Resources\b1.bmp
c:\program files\DAEMON Tools Toolbar\Resources\b1.png
c:\program files\DAEMON Tools Toolbar\Resources\burn_files.ico
c:\program files\DAEMON Tools Toolbar\Resources\burn_image.ico
c:\program files\DAEMON Tools Toolbar\Resources\burn_imgs.ico
c:\program files\DAEMON Tools Toolbar\Resources\BurnImage.ico
c:\program files\DAEMON Tools Toolbar\Resources\buy.ico
c:\program files\DAEMON Tools Toolbar\Resources\cond000.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond001.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond003.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond004.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond005.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond006.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond007.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond008.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond009.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond010.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond011.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond019.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond020.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond021.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond022.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond023.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond024.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond025.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond026.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond037.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond038.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond039.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond040.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond041.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond046.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond048.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond050.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond051.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond052.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond053.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond054.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond055.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond056.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond057.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond058.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond059.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond060.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond061.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond062.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond063.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond064.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond065.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond066.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond067.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond068.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond069.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond075.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond076.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond077.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond078.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond079.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond080.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond084.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond085.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond086.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond087.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond088.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond089.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond090.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond091.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond092.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond093.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond094.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond095.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond108.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond109.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond110.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond111.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond112.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond113.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond120.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond121.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond122.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond126.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond127.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond128.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond129.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond130.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond131.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond132.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond133.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond134.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond135.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond136.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond137.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond138.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond140.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond141.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond142.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond143.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond148.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond149.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond152.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond154.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond155.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond156.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond157.gif
c:\program files\DAEMON Tools Toolbar\Resources\Config.ico
c:\program files\DAEMON Tools Toolbar\Resources\d.ico
c:\program files\DAEMON Tools Toolbar\Resources\d2.ico
c:\program files\DAEMON Tools Toolbar\Resources\daemon.ico
c:\program files\DAEMON Tools Toolbar\Resources\daemon_search.ico
c:\program files\DAEMON Tools Toolbar\Resources\daemon_search_site.ico
c:\program files\DAEMON Tools Toolbar\Resources\dot_disabled.bmp
c:\program files\DAEMON Tools Toolbar\Resources\dot_enabled.bmp
c:\program files\DAEMON Tools Toolbar\Resources\dot_on_over.bmp
c:\program files\DAEMON Tools Toolbar\Resources\download.ico
c:\program files\DAEMON Tools Toolbar\Resources\ds.ico
c:\program files\DAEMON Tools Toolbar\Resources\dsearch.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt-home.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_about.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_buy.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_download.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_faq.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_feedback.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_forum.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_line.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_lite.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_manual.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_pro.ico
c:\program files\DAEMON Tools Toolbar\Resources\DTPro.ico
c:\program files\DAEMON Tools Toolbar\Resources\dtt16.ico
c:\program files\DAEMON Tools Toolbar\Resources\dtt32.ico
c:\program files\DAEMON Tools Toolbar\Resources\Dwnl.ico
c:\program files\DAEMON Tools Toolbar\Resources\emulation.ico
c:\program files\DAEMON Tools Toolbar\Resources\favicon.ico
c:\program files\DAEMON Tools Toolbar\Resources\features.ico
c:\program files\DAEMON Tools Toolbar\Resources\feedback.ico
c:\program files\DAEMON Tools Toolbar\Resources\forum.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrix.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrixCristals.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrixDownload.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrixPlayOnline.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrixTop.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameS.ico
c:\program files\DAEMON Tools Toolbar\Resources\games_search.ico
c:\program files\DAEMON Tools Toolbar\Resources\games_search_SA.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameSA.ico
c:\program files\DAEMON Tools Toolbar\Resources\gct16.ico
c:\program files\DAEMON Tools Toolbar\Resources\gd.ico
c:\program files\DAEMON Tools Toolbar\Resources\genre.xml
c:\program files\DAEMON Tools Toolbar\Resources\globe.ico
c:\program files\DAEMON Tools Toolbar\Resources\GrabImage.ico
c:\program files\DAEMON Tools Toolbar\Resources\hb.bmp
c:\program files\DAEMON Tools Toolbar\Resources\hb.ico
c:\program files\DAEMON Tools Toolbar\Resources\help.ico
c:\program files\DAEMON Tools Toolbar\Resources\hide.ico
c:\program files\DAEMON Tools Toolbar\Resources\home.ico
c:\program files\DAEMON Tools Toolbar\Resources\image_search.ico
c:\program files\DAEMON Tools Toolbar\Resources\image_search_SA.ico
c:\program files\DAEMON Tools Toolbar\Resources\ImageS.ico
c:\program files\DAEMON Tools Toolbar\Resources\ImageSA.ico
c:\program files\DAEMON Tools Toolbar\Resources\ip.ico
c:\program files\DAEMON Tools Toolbar\Resources\lang.xml
c:\program files\DAEMON Tools Toolbar\Resources\lingvo.ico
c:\program files\DAEMON Tools Toolbar\Resources\m.ico
c:\program files\DAEMON Tools Toolbar\Resources\mail.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mail_disable.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mail_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mail_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mail_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc_disable.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\MenuRadioConfig.ico
c:\program files\DAEMON Tools Toolbar\Resources\MenuRadioStation.ico
c:\program files\DAEMON Tools Toolbar\Resources\MenuRSCur.ico
c:\program files\DAEMON Tools Toolbar\Resources\MenuTr.ico
c:\program files\DAEMON Tools Toolbar\Resources\mount.ico
c:\program files\DAEMON Tools Toolbar\Resources\mount_n_drive.ico
c:\program files\DAEMON Tools Toolbar\Resources\next.bmp
c:\program files\DAEMON Tools Toolbar\Resources\next_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\next_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\next_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\none.bmp
c:\program files\DAEMON Tools Toolbar\Resources\none_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\noW.gif
c:\program files\DAEMON Tools Toolbar\Resources\op.ico
c:\program files\DAEMON Tools Toolbar\Resources\play.bmp
c:\program files\DAEMON Tools Toolbar\Resources\play.ico
c:\program files\DAEMON Tools Toolbar\Resources\play_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\play_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\play_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\pragma.ico
c:\program files\DAEMON Tools Toolbar\Resources\prev.bmp
c:\program files\DAEMON Tools Toolbar\Resources\prev_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\prev_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\prev_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\prod.ico
c:\program files\DAEMON Tools Toolbar\Resources\Radio.ico
c:\program files\DAEMON Tools Toolbar\Resources\RadioBg.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioBg.ico
c:\program files\DAEMON Tools Toolbar\Resources\RadioBgMask.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDisp.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDisp_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown.ico
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioE.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioG.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioL.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioLDotMask.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioLeft.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioLeftMask.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioLM.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioM.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioN.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioR.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioR.ico
c:\program files\DAEMON Tools Toolbar\Resources\RadioRM.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioRU.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioVolume.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioVolume_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioVolume_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioVolume_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioW.bmp
c:\program files\DAEMON Tools Toolbar\Resources\rbcheck.ico
c:\program files\DAEMON Tools Toolbar\Resources\rbtxt.ico
c:\program files\DAEMON Tools Toolbar\Resources\refresh.bmp
c:\program files\DAEMON Tools Toolbar\Resources\refresh_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\refresh_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\refresh_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Rss.ico
c:\program files\DAEMON Tools Toolbar\Resources\Rss1.ico
c:\program files\DAEMON Tools Toolbar\Resources\RssA.ico
c:\program files\DAEMON Tools Toolbar\Resources\RssA1.ico
c:\program files\DAEMON Tools Toolbar\Resources\rssClose.ico
c:\program files\DAEMON Tools Toolbar\Resources\rssL.bmp
c:\program files\DAEMON Tools Toolbar\Resources\rssOpen.ico
c:\program files\DAEMON Tools Toolbar\Resources\RssRefresh.ico
c:\program files\DAEMON Tools Toolbar\Resources\s2.ico
c:\program files\DAEMON Tools Toolbar\Resources\show.ico
c:\program files\DAEMON Tools Toolbar\Resources\size.bmp
c:\program files\DAEMON Tools Toolbar\Resources\size_lr.ico
c:\program files\DAEMON Tools Toolbar\Resources\size_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\size_rl.ico
c:\program files\DAEMON Tools Toolbar\Resources\skins.ico
c:\program files\DAEMON Tools Toolbar\Resources\spt.ico
c:\program files\DAEMON Tools Toolbar\Resources\stop.bmp
c:\program files\DAEMON Tools Toolbar\Resources\stop.ico
c:\program files\DAEMON Tools Toolbar\Resources\stop_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\stop_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\stop_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\style.ico
c:\program files\DAEMON Tools Toolbar\Resources\SupportRequest.ico
c:\program files\DAEMON Tools Toolbar\Resources\time.ico
c:\program files\DAEMON Tools Toolbar\Resources\timer.ico
c:\program files\DAEMON Tools Toolbar\Resources\TitleIcon.ico
c:\program files\DAEMON Tools Toolbar\Resources\toolbar.xml
c:\program files\DAEMON Tools Toolbar\Resources\trans.ico
c:\program files\DAEMON Tools Toolbar\Resources\Trash.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Trash_disable.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Trash_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Trash_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Trash_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\u.ico
c:\program files\DAEMON Tools Toolbar\Resources\unmount-all.ico
c:\program files\DAEMON Tools Toolbar\Resources\vol.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol.ico
c:\program files\DAEMON Tools Toolbar\Resources\vol_back.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_dott.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_dott_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_mute.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_mute_check.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wb.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtClose.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtClose_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtClose_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtClose_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtText.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtText_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtText_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtText_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Weather_m42.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Weather_m43.bmp
c:\program files\DAEMON Tools Toolbar\Resources\web_resources.ico
c:\program files\DAEMON Tools Toolbar\Resources\web_search.ico
c:\program files\DAEMON Tools Toolbar\Resources\web_search_SA.ico
c:\program files\DAEMON Tools Toolbar\Resources\WebS.ico
c:\program files\DAEMON Tools Toolbar\Resources\WebSa.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi0.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi1.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi10.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi11.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi12.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi13.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi14.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi2.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi3.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi4.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi5.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi6.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi7.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi8.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi9.ico
c:\program files\DAEMON Tools Toolbar\uninst.exe
c:\program files\ICQ6Toolbar
c:\program files\ICQ6Toolbar\config.xml
c:\program files\ICQ6Toolbar\Icons.bmp
c:\program files\ICQ6Toolbar\ICQ Service.exe
c:\program files\ICQ6Toolbar\icq6Toolbar.ico
c:\program files\ICQ6Toolbar\ICQToolBar.dll
c:\program files\ICQ6Toolbar\ICQUnToolbar.exe
c:\program files\ICQ6Toolbar\logo_small.gif
c:\program files\ICQ6Toolbar\ServiceStarter.exe
c:\program files\ICQ6Toolbar\short.wav
c:\program files\ICQ6Toolbar\Version.txt
c:\program files\Norton Security Scan
c:\program files\Norton Security Scan\Engine\2.3.0.44\{2A85E335-7417-424d-AD89-31DED1689794}.dat
c:\program files\Norton Security Scan\Engine\2.3.0.44\{407D1C08-B366-4aca-92FB-E04E97F6681D}.dat
c:\program files\Norton Security Scan\Engine\2.3.0.44\BilBDRes.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ccL80U.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ccScanw.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ccVrTrst.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\dec_abi.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\DefUtDCD.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\diLueCbk.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ecmldr32.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\HeartBt.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\help.htm
c:\program files\Norton Security Scan\Engine\2.3.0.44\Microsoft.VC80.CRT.manifest
c:\program files\Norton Security Scan\Engine\2.3.0.44\msl.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\msvcp80.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\msvcr80.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\Nss.exe
c:\program files\Norton Security Scan\Engine\2.3.0.44\NssCFA.exe
c:\program files\Norton Security Scan\Engine\2.3.0.44\patch25d.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\PrdDtRes.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\SAUpdt.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ScanCore.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ScanRes.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\SKUCfg.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\SKURes.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\SymHTML.dll
c:\program files\Norton Security Scan\isolate.ini
c:\program files\NortonInstaller
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\05\01\InstUI.loc
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\ccL80U.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\ccSet.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Engine.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\extract.dat
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\fallback.dat
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\finalzed.dat
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Install.mft
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\InstStub.exe
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\InstUI.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\layout.dat
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Lue.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Microsoft.VC80.CRT\Microsoft.VC80.CRT.manifest
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Microsoft.VC80.CRT\msvcm80.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Microsoft.VC80.CRT\msvcp80.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Microsoft.VC80.CRT\msvcr80.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\ProdCbk.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\SKUCfg.dll
c:\windows\system32\emptyregdb.dat
c:\windows\system32\ezsidmv.dat
c:\windows\Tasks\Norton Security Scan for zoltan.job
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_GARENAPENGINE
((((((((((((((((((((((((( Soubory vytvořené od 2008-12-24 do 2009-01-24 )))))))))))))))))))))))))))))))
.
2010-01-19 14:00 . 2004-08-03 22:08 26496 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2010-01-16 12:24 . 2010-01-16 12:24 -------- d-----w- c:\program files\VDOWNLOADER
2010-01-11 13:38 . 2010-01-14 15:13 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
2010-01-11 10:21 . 2010-01-11 10:21 21840 ----a-w- c:\windows\system32\SIntfNT.dll
2010-01-11 10:21 . 2010-01-11 10:21 17212 ----a-w- c:\windows\system32\SIntf32.dll
2010-01-11 10:21 . 2010-01-11 13:38 35302 ----a-w- c:\windows\DIIUnin.dat
2010-01-11 10:21 . 2010-01-11 10:21 94208 ----a-w- c:\windows\DIIUnin.exe
2010-01-11 10:21 . 2010-01-11 10:21 2829 ----a-w- c:\windows\DIIUnin.pif
2010-01-11 10:20 . 2010-01-16 11:47 -------- d-----w- c:\program files\Diablo II
2010-01-05 14:57 . 2010-01-05 15:05 -------- d-----w- c:\program files\Nero
2010-01-05 14:57 . 2010-01-05 15:06 -------- d-----w- c:\program files\Common Files\Nero
2009-12-27 01:30 . 2009-12-27 01:30 -------- d-----w- c:\program files\GamePark
2009-12-27 01:06 . 2009-12-27 01:06 -------- d-----w- c:\program files\Activision
2009-12-25 19:25 . 2009-01-24 09:42 -------- d-----w- c:\program files\SpeedFan
2009-12-25 19:08 . 2009-12-25 19:08 -------- d-----w- c:\program files\AGEIA Technologies
2009-12-25 19:08 . 2009-12-25 19:08 -------- d-----w- c:\windows\system32\AGEIA
2009-12-25 11:53 . 2009-12-25 11:53 -------- d-----w- c:\program files\Common Files\DirectX
2009-12-25 11:51 . 2009-12-25 11:51 -------- d-----w- c:\program files\EA GAMES
2009-12-24 17:33 . 2009-12-24 17:33 2488 ----a-w- c:\windows\system32\ealregsnapshot1.reg
2009-12-24 02:03 . 2009-12-24 02:03 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-12-24 02:02 . 2009-12-24 02:02 -------- d-----w- c:\program files\NVIDIA Corporation
2009-12-24 02:01 . 2009-12-24 02:01 -------- d-----w- C:\NVIDIA
2009-12-24 01:08 . 2009-12-24 01:11 -------- d-----w- c:\program files\Google
2009-12-24 01:08 . 2009-01-24 10:21 -------- d-----w- c:\program files\DivX
2009-12-24 01:08 . 2009-01-24 10:20 -------- d-----w- c:\program files\Common Files\DivX Shared
2009-12-23 13:42 . 2009-12-23 13:42 -------- d-----w- C:\ATI
2009-12-20 18:49 . 2009-12-20 20:06 -------- d-----w- c:\program files\AIMP2
2009-12-13 10:49 . 2009-12-13 10:49 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2009-12-09 20:30 . 2009-12-09 20:30 -------- d-----w- c:\program files\Opera
2009-12-08 14:38 . 2009-12-08 14:42 -------- d-----w- c:\program files\Valve
2009-12-05 23:14 . 2009-12-05 23:14 -------- d-----w- c:\windows\system32\LogFiles
2009-12-02 21:23 . 2009-12-02 21:23 -------- d-----w- c:\program files\Common Files\Skype
2009-12-02 21:23 . 2009-12-02 21:24 -------- d-----r- c:\program files\Skype
2009-12-01 21:53 . 2009-12-01 21:53 -------- d-----w- c:\program files\sonak
2009-11-29 17:12 . 2009-11-29 17:12 -------- d-----w- c:\program files\OpenOffice.org 3
2009-11-29 16:58 . 2009-11-29 16:58 -------- d-----w- c:\program files\edu-learning
2009-11-23 07:23 . 2009-11-23 07:23 -------- d--h--w- c:\windows\PIF
2009-11-22 13:52 . 2009-11-22 13:52 -------- d-----w- c:\program files\Uniblue
2009-11-21 20:05 . 2009-11-21 20:05 -------- d-----w- c:\program files\Webteh
2009-11-19 18:45 . 2009-11-19 18:45 -------- d-----w- C:\ProgramData
2009-11-19 18:44 . 2009-11-19 18:44 -------- d-----w- c:\program files\Electronic Arts
2009-11-19 18:33 . 2009-11-19 18:33 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-11-19 18:33 . 2009-11-19 18:33 -------- d-----w- c:\program files\DAEMON Tools Lite
2009-11-18 20:19 . 2009-11-18 20:20 -------- d-----w- c:\program files\BitLord
2009-11-18 19:23 . 2009-11-18 19:23 0 ----a-w- c:\windows\nsreg.dat
2009-11-18 19:17 . 2009-11-26 06:35 -------- d-----w- C:\QIP Infium JadrisPack
2009-11-18 19:16 . 2009-11-24 23:48 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-18 19:16 . 2009-11-24 23:49 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-18 19:16 . 2009-11-24 23:47 27408 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-11-18 19:16 . 2009-11-24 23:50 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-11-18 19:16 . 2009-11-24 23:50 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-11-18 19:16 . 2009-11-24 23:47 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-18 19:16 . 2009-11-24 23:51 93424 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-11-18 19:16 . 2009-11-24 23:50 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-11-18 19:15 . 2009-11-24 23:54 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-18 19:15 . 2003-03-18 21:20 1060864 ----a-w- c:\windows\system32\MFC71.dll
2009-11-18 19:15 . 2003-03-18 20:14 499712 ----a-w- c:\windows\system32\MSVCP71.dll
2009-11-18 19:15 . 2003-02-21 04:42 348160 ----a-w- c:\windows\system32\MSVCR71.dll
2009-11-18 19:15 . 2009-11-18 19:15 -------- d-----w- c:\program files\Alwil Software
2009-11-18 19:10 . 2009-11-18 19:10 -------- d-----w- c:\windows\system32\Lang
2009-11-18 19:06 . 2006-08-15 05:09 83200 ----a-r- c:\windows\system32\drivers\Rtenicxp.sys
2009-11-18 19:06 . 2009-11-18 19:06 -------- d-----w- c:\windows\OPTIONS
2009-11-18 19:04 . 2004-08-17 14:49 4096 -c--a-w- c:\windows\system32\dllcache\ksuser.dll
2009-11-18 19:01 . 2009-11-18 19:01 -------- d-----w- c:\windows\ASUSInstAll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-07 15:07 . 2009-01-24 15:31 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-07 15:07 . 2009-01-24 15:31 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-27 01:10 . 2004-07-17 09:36 163644 ----a-w- c:\windows\system32\drivers\secdrv.sys
2009-12-24 17:33 . 2009-11-18 18:52 -------- d-----w- c:\program files\Common Files\InstallShield
2009-12-24 17:30 . 2009-11-19 18:36 -------- d-----w- c:\program files\EA Sports
2009-12-23 13:43 . 2009-12-23 13:43 0 ----a-w- c:\windows\ativpsrm.bin
2009-12-23 13:43 . 2009-12-23 13:43 -------- d-----w- c:\program files\ATI
2009-11-25 03:50 . 2007-02-02 20:03 4463104 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2009-11-25 03:27 . 2009-11-18 18:53 446464 ----a-w- c:\windows\system32\ATIDEMGX.dll
2009-11-25 03:26 . 2007-02-02 20:03 300032 ----a-w- c:\windows\system32\ati2dvag.dll
2009-11-25 03:11 . 2007-02-02 19:57 208896 ----a-w- c:\windows\system32\atipdlxx.dll
2009-11-25 03:11 . 2007-02-02 19:56 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2009-11-25 03:10 . 2007-02-02 19:56 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2009-11-25 03:10 . 2007-02-02 19:56 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2009-11-25 03:10 . 2007-02-02 19:56 155648 ----a-w- c:\windows\system32\ati2evxx.dll
2009-11-25 03:09 . 2007-02-02 19:55 602112 ----a-w- c:\windows\system32\ati2evxx.exe
2009-11-25 03:07 . 2007-02-02 19:54 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2009-11-25 02:59 . 2009-11-18 18:53 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2009-11-25 02:59 . 2007-02-02 19:46 3538496 ----a-w- c:\windows\system32\ati3duag.dll
2009-11-25 02:44 . 2007-02-02 19:19 13533184 ----a-w- c:\windows\system32\atioglxx.dll
2009-11-25 02:43 . 2007-02-02 19:40 2142848 ----a-w- c:\windows\system32\ativvaxx.dll
2009-11-25 02:42 . 2009-12-23 13:43 887724 ----a-w- c:\windows\system32\ativva6x.dat
2009-11-25 02:42 . 2009-12-23 13:43 3 ----a-w- c:\windows\system32\ativva5x.dat
2009-11-25 02:26 . 2009-12-23 13:43 65024 ----a-w- c:\windows\system32\atimpc32.dll
2009-11-25 02:26 . 2009-12-23 13:43 65024 ----a-w- c:\windows\system32\amdpcom32.dll
2009-11-25 02:21 . 2007-02-02 19:27 565248 ----a-w- c:\windows\system32\atikvmag.dll
2009-11-25 02:20 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\aticalrt.dll
2009-11-25 02:20 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\aticalcl.dll
2009-11-25 02:19 . 2009-12-23 13:43 176128 ----a-w- c:\windows\system32\atiadlxx.dll
2009-11-25 02:18 . 2007-02-02 19:25 17408 ----a-w- c:\windows\system32\atitvo32.dll
2009-11-25 02:18 . 2009-12-23 13:43 3612672 ----a-w- c:\windows\system32\aticaldd.dll
2009-11-25 02:18 . 2007-02-02 19:35 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2009-11-25 02:17 . 2009-12-23 13:43 397312 ----a-w- c:\windows\system32\atiok3x2.dll
2009-11-25 02:12 . 2007-02-02 19:20 638976 ----a-w- c:\windows\system32\ati2cqag.dll
2009-11-18 19:06 . 2009-11-18 19:04 -------- d-----w- c:\program files\Realtek
2009-11-18 19:04 . 2009-11-18 19:04 315392 ----a-w- c:\windows\HideWin.exe
2009-11-18 18:57 . 2009-11-18 18:53 -------- d-----w- c:\program files\ATI Technologies
2009-11-18 18:51 . 2009-11-18 18:51 -------- d-----w- c:\program files\AMD
2009-11-18 18:01 . 2009-11-18 17:53 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-11-18 18:01 . 2009-11-18 17:53 2426 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2009-11-18 18:01 . 2009-11-18 17:53 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2009-11-18 17:54 . 2009-11-18 17:54 -------- d-----w- c:\program files\microsoft frontpage
2009-11-14 00:49 . 2009-01-24 10:21 9464 ------w- c:\windows\system32\drivers\cdralw2k.sys
2009-11-14 00:49 . 2009-01-24 10:21 9336 ------w- c:\windows\system32\drivers\cdr4_xp.sys
2009-11-14 00:49 . 2009-01-24 10:21 43528 ------w- c:\windows\system32\drivers\PxHelp20.sys
2009-11-14 00:49 . 2009-01-24 10:21 120056 ------w- c:\windows\system32\pxcpyi64.exe
2009-11-14 00:49 . 2009-01-24 10:21 129784 ------w- c:\windows\system32\pxafs.dll
2009-11-14 00:49 . 2009-01-24 10:21 118520 ------w- c:\windows\system32\pxinsi64.exe
2009-11-14 00:47 . 2009-11-14 00:47 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ----a-w- c:\windows\system32\divx_xx0c.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ----a-w- c:\windows\system32\divx_xx07.dll
2009-11-14 00:47 . 2009-11-14 00:47 847872 ----a-w- c:\windows\system32\divx_xx0a.dll
2009-11-14 00:47 . 2009-11-14 00:47 843776 ----a-w- c:\windows\system32\divx_xx16.dll
2009-11-14 00:47 . 2009-11-14 00:47 839680 ----a-w- c:\windows\system32\divx_xx11.dll
2009-11-14 00:47 . 2009-11-14 00:47 696320 ----a-w- c:\windows\system32\DivX.dll
2009-10-22 15:59 . 2009-11-18 18:53 196565 ----a-w- c:\windows\system32\atiicdxx.dat
2009-08-14 12:36 . 2009-08-14 12:36 70936 ----a-w- c:\windows\system32\PhysXLoader.dll
2009-05-11 22:35 . 2009-12-23 13:43 118784 ----a-w- c:\windows\system32\atibtmon.exe
2009-02-18 18:55 . 2009-12-23 13:43 294912 ----a-w- c:\windows\system32\ATIODE.exe
2009-02-03 21:52 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\ATIODCLI.exe
2009-01-24 18:26 . 2009-01-24 18:26 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-01-24 18:26 . 2009-01-21 10:13 -------- d-----w- c:\program files\DNA
2009-01-24 15:31 . 2009-01-24 15:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-01-24 12:31 . 2009-01-24 12:31 -------- d-----w- c:\program files\Trend Micro
2009-01-23 22:04 . 2009-01-23 22:02 -------- d-----w- c:\program files\ICQ7.0
2009-01-23 01:47 . 2009-11-18 18:51 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-01-21 11:27 . 2001-10-25 14:00 68916 ----a-w- c:\windows\system32\perfc005.dat
2009-01-21 11:27 . 2001-10-25 14:00 389938 ----a-w- c:\windows\system32\perfh005.dat
.
((((((((((((((((((((((((((((( SnapShot@2009-01-24_17.49.06 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-01-24 18:26 . 2009-01-24 18:26 16384 c:\windows\Temp\Perflib_Perfdata_5b0.dat
+ 2009-01-24 18:26 . 2009-01-24 18:26 16384 c:\windows\Temp\Perflib_Perfdata_1bc.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"EA Core"="c:\program files\Electronic Arts\EADM\Core.exe" [2009-04-29 3338240]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25623336]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2004-08-17 1667584]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2009-01-21 323392]
"ICQ"="c:\program files\ICQ7.0\ICQ.exe" [2010-01-12 133368]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"WiseStubReboot"="MSIEXEC" [X]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-04-12 16132608]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]
c:\documents and settings\zoltan\Nabˇdka Start\Programy\Po spuçtŘnˇ\
OpenOffice.org 3.0.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-1-15 393216]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\BitLord\\BitLord.exe"=
"c:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Valve\\hl.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\QIP Infium JadrisPack\\infium.exe"=
"c:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe"=
"c:\\Program Files\\EA GAMES\\Need for Speed Underground 2\\SPEED2.EXE"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\ICQ7.0\\ICQ.exe"=
"c:\\Program Files\\ICQ7.0\\aolload.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [19.11.2009 19:33 691696]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [18.11.2009 20:16 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [18.11.2009 20:16 20560]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys --> c:\windows\system32\drivers\nvhda32.sys [?]
.
.
------- Doplňkový sken -------
.
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files\ICQ7.0\ICQ.exe
FF - ProfilePath - c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... 2.0.0.0&q=
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
AddRemove-DAEMON Tools Toolbar - c:\program files\DAEMON Tools Toolbar\uninst.exe
AddRemove-NSS - c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\InstStub.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-24 19:26
Windows 5.1.2600 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net
device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll >>UNKNOWN [0x89E541F8]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0xb80ecfc3
\Driver\ACPI -> ACPI.sys @ 0xb7e74cb8
\Driver\atapi -> 0x89e541f8
IoDeviceObjectType -> DeleteProcedure -> ntkrnlpa.exe @ 0x8058236c
ParseProcedure -> ntkrnlpa.exe @ 0x8058146a
\Device\Harddisk0\DR0 -> DeleteProcedure -> ntkrnlpa.exe @ 0x8058236c
ParseProcedure -> ntkrnlpa.exe @ 0x8058146a
NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC -> SendCompleteHandler -> NDIS.sys @ 0xb7d13ba0
PacketIndicateHandler -> NDIS.sys @ 0xb7d20b21
SendHandler -> NDIS.sys @ 0xb7cfe87b
Warning: possible MBR rootkit infection !
user & kernel MBR OK
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(732)
c:\windows\system32\Ati2evxx.dll
- - - - - - - > 'explorer.exe'(2820)
c:\windows\system32\msi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Celkový čas: 2009-01-24 19:27:58 - počítač byl restartován
ComboFix-quarantined-files.txt 2009-01-24 18:27
ComboFix2.txt 2009-01-24 17:49
Před spuštěním: Volných bajtů: 192 251 486 208
Po spuštění: Volných bajtů: 192 147 804 160
- - End Of File - - B9D7CE823D79D9E4D804AB5ED6A56945
:-) hijackthis:)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:32:20, on 24.1.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DNA\btdna.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - HKCU\..\RunOnce: [WiseStubReboot] MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I "C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MSI" TRANSFORMS="C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MST" WISE_SETUP_EXE_PATH="c:\nvidia\displaydriver\190.62\english\PhysX_9.09.0814_SystemSoftware.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
--
End of file - 4371 bytes
--- a u combofixu.. kdyz sem to spustil tak mi 3x hlasite pipnul pc jinak nic ..
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.2046.1594 [GMT 1:00]
Spuštěný z: c:\documents and settings\zoltan\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\zoltan\Plocha\CFScript.txt
AV: avast! antivirus 4.8.1368 [VPS 100117-1] *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FILE ::
"c:\docume~1\zoltan\LOCALS~1\Temp\AKC14F.tmp"
"c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll"
"c:\program files\Norton Security Scan\Engine\2.3.0.44\Nss.exe"
"c:\windows\system32\emptyregdb.dat"
"c:\windows\system32\ezsidmv.dat"
"c:\windows\Tasks\Norton Security Scan for zoltan.job"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
c:\program files\DAEMON Tools Toolbar
c:\program files\DAEMON Tools Toolbar\_DTLite.xml
c:\program files\DAEMON Tools Toolbar\DTToolbar.dll
c:\program files\DAEMON Tools Toolbar\Resources\about.ico
c:\program files\DAEMON Tools Toolbar\Resources\AboutWindow.ico
c:\program files\DAEMON Tools Toolbar\Resources\accept.ico
c:\program files\DAEMON Tools Toolbar\Resources\AddRadioStation.ico
c:\program files\DAEMON Tools Toolbar\Resources\as.ico
c:\program files\DAEMON Tools Toolbar\Resources\as.png
c:\program files\DAEMON Tools Toolbar\Resources\astro.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_buy.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_download.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_feedback.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_forum.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_home.ico
c:\program files\DAEMON Tools Toolbar\Resources\astro_lite.ico
c:\program files\DAEMON Tools Toolbar\Resources\astroburn_site.ico
c:\program files\DAEMON Tools Toolbar\Resources\astroLite_16.ico
c:\program files\DAEMON Tools Toolbar\Resources\az.ico
c:\program files\DAEMON Tools Toolbar\Resources\b1.bmp
c:\program files\DAEMON Tools Toolbar\Resources\b1.png
c:\program files\DAEMON Tools Toolbar\Resources\burn_files.ico
c:\program files\DAEMON Tools Toolbar\Resources\burn_image.ico
c:\program files\DAEMON Tools Toolbar\Resources\burn_imgs.ico
c:\program files\DAEMON Tools Toolbar\Resources\BurnImage.ico
c:\program files\DAEMON Tools Toolbar\Resources\buy.ico
c:\program files\DAEMON Tools Toolbar\Resources\cond000.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond001.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond003.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond004.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond005.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond006.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond007.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond008.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond009.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond010.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond011.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond019.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond020.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond021.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond022.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond023.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond024.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond025.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond026.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond037.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond038.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond039.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond040.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond041.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond046.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond048.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond050.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond051.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond052.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond053.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond054.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond055.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond056.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond057.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond058.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond059.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond060.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond061.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond062.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond063.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond064.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond065.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond066.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond067.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond068.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond069.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond075.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond076.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond077.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond078.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond079.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond080.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond084.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond085.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond086.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond087.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond088.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond089.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond090.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond091.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond092.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond093.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond094.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond095.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond108.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond109.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond110.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond111.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond112.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond113.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond120.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond121.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond122.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond126.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond127.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond128.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond129.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond130.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond131.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond132.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond133.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond134.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond135.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond136.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond137.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond138.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond140.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond141.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond142.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond143.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond148.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond149.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond152.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond154.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond155.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond156.gif
c:\program files\DAEMON Tools Toolbar\Resources\cond157.gif
c:\program files\DAEMON Tools Toolbar\Resources\Config.ico
c:\program files\DAEMON Tools Toolbar\Resources\d.ico
c:\program files\DAEMON Tools Toolbar\Resources\d2.ico
c:\program files\DAEMON Tools Toolbar\Resources\daemon.ico
c:\program files\DAEMON Tools Toolbar\Resources\daemon_search.ico
c:\program files\DAEMON Tools Toolbar\Resources\daemon_search_site.ico
c:\program files\DAEMON Tools Toolbar\Resources\dot_disabled.bmp
c:\program files\DAEMON Tools Toolbar\Resources\dot_enabled.bmp
c:\program files\DAEMON Tools Toolbar\Resources\dot_on_over.bmp
c:\program files\DAEMON Tools Toolbar\Resources\download.ico
c:\program files\DAEMON Tools Toolbar\Resources\ds.ico
c:\program files\DAEMON Tools Toolbar\Resources\dsearch.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt-home.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_about.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_buy.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_download.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_faq.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_feedback.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_forum.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_line.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_lite.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_manual.ico
c:\program files\DAEMON Tools Toolbar\Resources\dt_pro.ico
c:\program files\DAEMON Tools Toolbar\Resources\DTPro.ico
c:\program files\DAEMON Tools Toolbar\Resources\dtt16.ico
c:\program files\DAEMON Tools Toolbar\Resources\dtt32.ico
c:\program files\DAEMON Tools Toolbar\Resources\Dwnl.ico
c:\program files\DAEMON Tools Toolbar\Resources\emulation.ico
c:\program files\DAEMON Tools Toolbar\Resources\favicon.ico
c:\program files\DAEMON Tools Toolbar\Resources\features.ico
c:\program files\DAEMON Tools Toolbar\Resources\feedback.ico
c:\program files\DAEMON Tools Toolbar\Resources\forum.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrix.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrixCristals.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrixDownload.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrixPlayOnline.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameCentrixTop.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameS.ico
c:\program files\DAEMON Tools Toolbar\Resources\games_search.ico
c:\program files\DAEMON Tools Toolbar\Resources\games_search_SA.ico
c:\program files\DAEMON Tools Toolbar\Resources\GameSA.ico
c:\program files\DAEMON Tools Toolbar\Resources\gct16.ico
c:\program files\DAEMON Tools Toolbar\Resources\gd.ico
c:\program files\DAEMON Tools Toolbar\Resources\genre.xml
c:\program files\DAEMON Tools Toolbar\Resources\globe.ico
c:\program files\DAEMON Tools Toolbar\Resources\GrabImage.ico
c:\program files\DAEMON Tools Toolbar\Resources\hb.bmp
c:\program files\DAEMON Tools Toolbar\Resources\hb.ico
c:\program files\DAEMON Tools Toolbar\Resources\help.ico
c:\program files\DAEMON Tools Toolbar\Resources\hide.ico
c:\program files\DAEMON Tools Toolbar\Resources\home.ico
c:\program files\DAEMON Tools Toolbar\Resources\image_search.ico
c:\program files\DAEMON Tools Toolbar\Resources\image_search_SA.ico
c:\program files\DAEMON Tools Toolbar\Resources\ImageS.ico
c:\program files\DAEMON Tools Toolbar\Resources\ImageSA.ico
c:\program files\DAEMON Tools Toolbar\Resources\ip.ico
c:\program files\DAEMON Tools Toolbar\Resources\lang.xml
c:\program files\DAEMON Tools Toolbar\Resources\lingvo.ico
c:\program files\DAEMON Tools Toolbar\Resources\m.ico
c:\program files\DAEMON Tools Toolbar\Resources\mail.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mail_disable.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mail_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mail_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mail_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc_disable.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\mailc_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\MenuRadioConfig.ico
c:\program files\DAEMON Tools Toolbar\Resources\MenuRadioStation.ico
c:\program files\DAEMON Tools Toolbar\Resources\MenuRSCur.ico
c:\program files\DAEMON Tools Toolbar\Resources\MenuTr.ico
c:\program files\DAEMON Tools Toolbar\Resources\mount.ico
c:\program files\DAEMON Tools Toolbar\Resources\mount_n_drive.ico
c:\program files\DAEMON Tools Toolbar\Resources\next.bmp
c:\program files\DAEMON Tools Toolbar\Resources\next_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\next_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\next_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\none.bmp
c:\program files\DAEMON Tools Toolbar\Resources\none_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\noW.gif
c:\program files\DAEMON Tools Toolbar\Resources\op.ico
c:\program files\DAEMON Tools Toolbar\Resources\play.bmp
c:\program files\DAEMON Tools Toolbar\Resources\play.ico
c:\program files\DAEMON Tools Toolbar\Resources\play_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\play_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\play_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\pragma.ico
c:\program files\DAEMON Tools Toolbar\Resources\prev.bmp
c:\program files\DAEMON Tools Toolbar\Resources\prev_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\prev_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\prev_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\prod.ico
c:\program files\DAEMON Tools Toolbar\Resources\Radio.ico
c:\program files\DAEMON Tools Toolbar\Resources\RadioBg.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioBg.ico
c:\program files\DAEMON Tools Toolbar\Resources\RadioBgMask.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDisp.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDisp_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown.ico
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioDown_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioE.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioG.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioL.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioLDotMask.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioLeft.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioLeftMask.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioLM.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioM.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioN.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioR.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioR.ico
c:\program files\DAEMON Tools Toolbar\Resources\RadioRM.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioRU.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioVolume.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioVolume_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioVolume_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioVolume_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\RadioW.bmp
c:\program files\DAEMON Tools Toolbar\Resources\rbcheck.ico
c:\program files\DAEMON Tools Toolbar\Resources\rbtxt.ico
c:\program files\DAEMON Tools Toolbar\Resources\refresh.bmp
c:\program files\DAEMON Tools Toolbar\Resources\refresh_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\refresh_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\refresh_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Rss.ico
c:\program files\DAEMON Tools Toolbar\Resources\Rss1.ico
c:\program files\DAEMON Tools Toolbar\Resources\RssA.ico
c:\program files\DAEMON Tools Toolbar\Resources\RssA1.ico
c:\program files\DAEMON Tools Toolbar\Resources\rssClose.ico
c:\program files\DAEMON Tools Toolbar\Resources\rssL.bmp
c:\program files\DAEMON Tools Toolbar\Resources\rssOpen.ico
c:\program files\DAEMON Tools Toolbar\Resources\RssRefresh.ico
c:\program files\DAEMON Tools Toolbar\Resources\s2.ico
c:\program files\DAEMON Tools Toolbar\Resources\show.ico
c:\program files\DAEMON Tools Toolbar\Resources\size.bmp
c:\program files\DAEMON Tools Toolbar\Resources\size_lr.ico
c:\program files\DAEMON Tools Toolbar\Resources\size_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\size_rl.ico
c:\program files\DAEMON Tools Toolbar\Resources\skins.ico
c:\program files\DAEMON Tools Toolbar\Resources\spt.ico
c:\program files\DAEMON Tools Toolbar\Resources\stop.bmp
c:\program files\DAEMON Tools Toolbar\Resources\stop.ico
c:\program files\DAEMON Tools Toolbar\Resources\stop_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\stop_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\stop_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\style.ico
c:\program files\DAEMON Tools Toolbar\Resources\SupportRequest.ico
c:\program files\DAEMON Tools Toolbar\Resources\time.ico
c:\program files\DAEMON Tools Toolbar\Resources\timer.ico
c:\program files\DAEMON Tools Toolbar\Resources\TitleIcon.ico
c:\program files\DAEMON Tools Toolbar\Resources\toolbar.xml
c:\program files\DAEMON Tools Toolbar\Resources\trans.ico
c:\program files\DAEMON Tools Toolbar\Resources\Trash.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Trash_disable.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Trash_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Trash_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Trash_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\u.ico
c:\program files\DAEMON Tools Toolbar\Resources\unmount-all.ico
c:\program files\DAEMON Tools Toolbar\Resources\vol.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol.ico
c:\program files\DAEMON Tools Toolbar\Resources\vol_back.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_dott.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_dott_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_mute.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_mute_check.bmp
c:\program files\DAEMON Tools Toolbar\Resources\vol_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wb.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtClose.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtClose_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtClose_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtClose_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtText.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtText_down.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtText_m.bmp
c:\program files\DAEMON Tools Toolbar\Resources\wBtText_under.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Weather_m42.bmp
c:\program files\DAEMON Tools Toolbar\Resources\Weather_m43.bmp
c:\program files\DAEMON Tools Toolbar\Resources\web_resources.ico
c:\program files\DAEMON Tools Toolbar\Resources\web_search.ico
c:\program files\DAEMON Tools Toolbar\Resources\web_search_SA.ico
c:\program files\DAEMON Tools Toolbar\Resources\WebS.ico
c:\program files\DAEMON Tools Toolbar\Resources\WebSa.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi0.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi1.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi10.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi11.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi12.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi13.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi14.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi2.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi3.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi4.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi5.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi6.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi7.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi8.ico
c:\program files\DAEMON Tools Toolbar\Resources\wi9.ico
c:\program files\DAEMON Tools Toolbar\uninst.exe
c:\program files\ICQ6Toolbar
c:\program files\ICQ6Toolbar\config.xml
c:\program files\ICQ6Toolbar\Icons.bmp
c:\program files\ICQ6Toolbar\ICQ Service.exe
c:\program files\ICQ6Toolbar\icq6Toolbar.ico
c:\program files\ICQ6Toolbar\ICQToolBar.dll
c:\program files\ICQ6Toolbar\ICQUnToolbar.exe
c:\program files\ICQ6Toolbar\logo_small.gif
c:\program files\ICQ6Toolbar\ServiceStarter.exe
c:\program files\ICQ6Toolbar\short.wav
c:\program files\ICQ6Toolbar\Version.txt
c:\program files\Norton Security Scan
c:\program files\Norton Security Scan\Engine\2.3.0.44\{2A85E335-7417-424d-AD89-31DED1689794}.dat
c:\program files\Norton Security Scan\Engine\2.3.0.44\{407D1C08-B366-4aca-92FB-E04E97F6681D}.dat
c:\program files\Norton Security Scan\Engine\2.3.0.44\BilBDRes.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ccL80U.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ccScanw.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ccVrTrst.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\dec_abi.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\DefUtDCD.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\diLueCbk.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ecmldr32.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\HeartBt.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\help.htm
c:\program files\Norton Security Scan\Engine\2.3.0.44\Microsoft.VC80.CRT.manifest
c:\program files\Norton Security Scan\Engine\2.3.0.44\msl.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\msvcp80.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\msvcr80.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\Nss.exe
c:\program files\Norton Security Scan\Engine\2.3.0.44\NssCFA.exe
c:\program files\Norton Security Scan\Engine\2.3.0.44\patch25d.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\PrdDtRes.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\SAUpdt.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ScanCore.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\ScanRes.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\SKUCfg.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\SKURes.dll
c:\program files\Norton Security Scan\Engine\2.3.0.44\SymHTML.dll
c:\program files\Norton Security Scan\isolate.ini
c:\program files\NortonInstaller
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\05\01\InstUI.loc
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\ccL80U.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\ccSet.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Engine.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\extract.dat
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\fallback.dat
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\finalzed.dat
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Install.mft
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\InstStub.exe
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\InstUI.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\layout.dat
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Lue.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Microsoft.VC80.CRT\Microsoft.VC80.CRT.manifest
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Microsoft.VC80.CRT\msvcm80.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Microsoft.VC80.CRT\msvcp80.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\Microsoft.VC80.CRT\msvcr80.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\ProdCbk.dll
c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\SKUCfg.dll
c:\windows\system32\emptyregdb.dat
c:\windows\system32\ezsidmv.dat
c:\windows\Tasks\Norton Security Scan for zoltan.job
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_GARENAPENGINE
((((((((((((((((((((((((( Soubory vytvořené od 2008-12-24 do 2009-01-24 )))))))))))))))))))))))))))))))
.
2010-01-19 14:00 . 2004-08-03 22:08 26496 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2010-01-16 12:24 . 2010-01-16 12:24 -------- d-----w- c:\program files\VDOWNLOADER
2010-01-11 13:38 . 2010-01-14 15:13 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
2010-01-11 10:21 . 2010-01-11 10:21 21840 ----a-w- c:\windows\system32\SIntfNT.dll
2010-01-11 10:21 . 2010-01-11 10:21 17212 ----a-w- c:\windows\system32\SIntf32.dll
2010-01-11 10:21 . 2010-01-11 13:38 35302 ----a-w- c:\windows\DIIUnin.dat
2010-01-11 10:21 . 2010-01-11 10:21 94208 ----a-w- c:\windows\DIIUnin.exe
2010-01-11 10:21 . 2010-01-11 10:21 2829 ----a-w- c:\windows\DIIUnin.pif
2010-01-11 10:20 . 2010-01-16 11:47 -------- d-----w- c:\program files\Diablo II
2010-01-05 14:57 . 2010-01-05 15:05 -------- d-----w- c:\program files\Nero
2010-01-05 14:57 . 2010-01-05 15:06 -------- d-----w- c:\program files\Common Files\Nero
2009-12-27 01:30 . 2009-12-27 01:30 -------- d-----w- c:\program files\GamePark
2009-12-27 01:06 . 2009-12-27 01:06 -------- d-----w- c:\program files\Activision
2009-12-25 19:25 . 2009-01-24 09:42 -------- d-----w- c:\program files\SpeedFan
2009-12-25 19:08 . 2009-12-25 19:08 -------- d-----w- c:\program files\AGEIA Technologies
2009-12-25 19:08 . 2009-12-25 19:08 -------- d-----w- c:\windows\system32\AGEIA
2009-12-25 11:53 . 2009-12-25 11:53 -------- d-----w- c:\program files\Common Files\DirectX
2009-12-25 11:51 . 2009-12-25 11:51 -------- d-----w- c:\program files\EA GAMES
2009-12-24 17:33 . 2009-12-24 17:33 2488 ----a-w- c:\windows\system32\ealregsnapshot1.reg
2009-12-24 02:03 . 2009-12-24 02:03 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-12-24 02:02 . 2009-12-24 02:02 -------- d-----w- c:\program files\NVIDIA Corporation
2009-12-24 02:01 . 2009-12-24 02:01 -------- d-----w- C:\NVIDIA
2009-12-24 01:08 . 2009-12-24 01:11 -------- d-----w- c:\program files\Google
2009-12-24 01:08 . 2009-01-24 10:21 -------- d-----w- c:\program files\DivX
2009-12-24 01:08 . 2009-01-24 10:20 -------- d-----w- c:\program files\Common Files\DivX Shared
2009-12-23 13:42 . 2009-12-23 13:42 -------- d-----w- C:\ATI
2009-12-20 18:49 . 2009-12-20 20:06 -------- d-----w- c:\program files\AIMP2
2009-12-13 10:49 . 2009-12-13 10:49 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2009-12-09 20:30 . 2009-12-09 20:30 -------- d-----w- c:\program files\Opera
2009-12-08 14:38 . 2009-12-08 14:42 -------- d-----w- c:\program files\Valve
2009-12-05 23:14 . 2009-12-05 23:14 -------- d-----w- c:\windows\system32\LogFiles
2009-12-02 21:23 . 2009-12-02 21:23 -------- d-----w- c:\program files\Common Files\Skype
2009-12-02 21:23 . 2009-12-02 21:24 -------- d-----r- c:\program files\Skype
2009-12-01 21:53 . 2009-12-01 21:53 -------- d-----w- c:\program files\sonak
2009-11-29 17:12 . 2009-11-29 17:12 -------- d-----w- c:\program files\OpenOffice.org 3
2009-11-29 16:58 . 2009-11-29 16:58 -------- d-----w- c:\program files\edu-learning
2009-11-23 07:23 . 2009-11-23 07:23 -------- d--h--w- c:\windows\PIF
2009-11-22 13:52 . 2009-11-22 13:52 -------- d-----w- c:\program files\Uniblue
2009-11-21 20:05 . 2009-11-21 20:05 -------- d-----w- c:\program files\Webteh
2009-11-19 18:45 . 2009-11-19 18:45 -------- d-----w- C:\ProgramData
2009-11-19 18:44 . 2009-11-19 18:44 -------- d-----w- c:\program files\Electronic Arts
2009-11-19 18:33 . 2009-11-19 18:33 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-11-19 18:33 . 2009-11-19 18:33 -------- d-----w- c:\program files\DAEMON Tools Lite
2009-11-18 20:19 . 2009-11-18 20:20 -------- d-----w- c:\program files\BitLord
2009-11-18 19:23 . 2009-11-18 19:23 0 ----a-w- c:\windows\nsreg.dat
2009-11-18 19:17 . 2009-11-26 06:35 -------- d-----w- C:\QIP Infium JadrisPack
2009-11-18 19:16 . 2009-11-24 23:48 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-18 19:16 . 2009-11-24 23:49 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-18 19:16 . 2009-11-24 23:47 27408 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-11-18 19:16 . 2009-11-24 23:50 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-11-18 19:16 . 2009-11-24 23:50 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-11-18 19:16 . 2009-11-24 23:47 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-18 19:16 . 2009-11-24 23:51 93424 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-11-18 19:16 . 2009-11-24 23:50 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-11-18 19:15 . 2009-11-24 23:54 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-18 19:15 . 2003-03-18 21:20 1060864 ----a-w- c:\windows\system32\MFC71.dll
2009-11-18 19:15 . 2003-03-18 20:14 499712 ----a-w- c:\windows\system32\MSVCP71.dll
2009-11-18 19:15 . 2003-02-21 04:42 348160 ----a-w- c:\windows\system32\MSVCR71.dll
2009-11-18 19:15 . 2009-11-18 19:15 -------- d-----w- c:\program files\Alwil Software
2009-11-18 19:10 . 2009-11-18 19:10 -------- d-----w- c:\windows\system32\Lang
2009-11-18 19:06 . 2006-08-15 05:09 83200 ----a-r- c:\windows\system32\drivers\Rtenicxp.sys
2009-11-18 19:06 . 2009-11-18 19:06 -------- d-----w- c:\windows\OPTIONS
2009-11-18 19:04 . 2004-08-17 14:49 4096 -c--a-w- c:\windows\system32\dllcache\ksuser.dll
2009-11-18 19:01 . 2009-11-18 19:01 -------- d-----w- c:\windows\ASUSInstAll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-07 15:07 . 2009-01-24 15:31 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-07 15:07 . 2009-01-24 15:31 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-27 01:10 . 2004-07-17 09:36 163644 ----a-w- c:\windows\system32\drivers\secdrv.sys
2009-12-24 17:33 . 2009-11-18 18:52 -------- d-----w- c:\program files\Common Files\InstallShield
2009-12-24 17:30 . 2009-11-19 18:36 -------- d-----w- c:\program files\EA Sports
2009-12-23 13:43 . 2009-12-23 13:43 0 ----a-w- c:\windows\ativpsrm.bin
2009-12-23 13:43 . 2009-12-23 13:43 -------- d-----w- c:\program files\ATI
2009-11-25 03:50 . 2007-02-02 20:03 4463104 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2009-11-25 03:27 . 2009-11-18 18:53 446464 ----a-w- c:\windows\system32\ATIDEMGX.dll
2009-11-25 03:26 . 2007-02-02 20:03 300032 ----a-w- c:\windows\system32\ati2dvag.dll
2009-11-25 03:11 . 2007-02-02 19:57 208896 ----a-w- c:\windows\system32\atipdlxx.dll
2009-11-25 03:11 . 2007-02-02 19:56 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2009-11-25 03:10 . 2007-02-02 19:56 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2009-11-25 03:10 . 2007-02-02 19:56 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2009-11-25 03:10 . 2007-02-02 19:56 155648 ----a-w- c:\windows\system32\ati2evxx.dll
2009-11-25 03:09 . 2007-02-02 19:55 602112 ----a-w- c:\windows\system32\ati2evxx.exe
2009-11-25 03:07 . 2007-02-02 19:54 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2009-11-25 02:59 . 2009-11-18 18:53 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2009-11-25 02:59 . 2007-02-02 19:46 3538496 ----a-w- c:\windows\system32\ati3duag.dll
2009-11-25 02:44 . 2007-02-02 19:19 13533184 ----a-w- c:\windows\system32\atioglxx.dll
2009-11-25 02:43 . 2007-02-02 19:40 2142848 ----a-w- c:\windows\system32\ativvaxx.dll
2009-11-25 02:42 . 2009-12-23 13:43 887724 ----a-w- c:\windows\system32\ativva6x.dat
2009-11-25 02:42 . 2009-12-23 13:43 3 ----a-w- c:\windows\system32\ativva5x.dat
2009-11-25 02:26 . 2009-12-23 13:43 65024 ----a-w- c:\windows\system32\atimpc32.dll
2009-11-25 02:26 . 2009-12-23 13:43 65024 ----a-w- c:\windows\system32\amdpcom32.dll
2009-11-25 02:21 . 2007-02-02 19:27 565248 ----a-w- c:\windows\system32\atikvmag.dll
2009-11-25 02:20 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\aticalrt.dll
2009-11-25 02:20 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\aticalcl.dll
2009-11-25 02:19 . 2009-12-23 13:43 176128 ----a-w- c:\windows\system32\atiadlxx.dll
2009-11-25 02:18 . 2007-02-02 19:25 17408 ----a-w- c:\windows\system32\atitvo32.dll
2009-11-25 02:18 . 2009-12-23 13:43 3612672 ----a-w- c:\windows\system32\aticaldd.dll
2009-11-25 02:18 . 2007-02-02 19:35 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2009-11-25 02:17 . 2009-12-23 13:43 397312 ----a-w- c:\windows\system32\atiok3x2.dll
2009-11-25 02:12 . 2007-02-02 19:20 638976 ----a-w- c:\windows\system32\ati2cqag.dll
2009-11-18 19:06 . 2009-11-18 19:04 -------- d-----w- c:\program files\Realtek
2009-11-18 19:04 . 2009-11-18 19:04 315392 ----a-w- c:\windows\HideWin.exe
2009-11-18 18:57 . 2009-11-18 18:53 -------- d-----w- c:\program files\ATI Technologies
2009-11-18 18:51 . 2009-11-18 18:51 -------- d-----w- c:\program files\AMD
2009-11-18 18:01 . 2009-11-18 17:53 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-11-18 18:01 . 2009-11-18 17:53 2426 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2009-11-18 18:01 . 2009-11-18 17:53 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2009-11-18 17:54 . 2009-11-18 17:54 -------- d-----w- c:\program files\microsoft frontpage
2009-11-14 00:49 . 2009-01-24 10:21 9464 ------w- c:\windows\system32\drivers\cdralw2k.sys
2009-11-14 00:49 . 2009-01-24 10:21 9336 ------w- c:\windows\system32\drivers\cdr4_xp.sys
2009-11-14 00:49 . 2009-01-24 10:21 43528 ------w- c:\windows\system32\drivers\PxHelp20.sys
2009-11-14 00:49 . 2009-01-24 10:21 120056 ------w- c:\windows\system32\pxcpyi64.exe
2009-11-14 00:49 . 2009-01-24 10:21 129784 ------w- c:\windows\system32\pxafs.dll
2009-11-14 00:49 . 2009-01-24 10:21 118520 ------w- c:\windows\system32\pxinsi64.exe
2009-11-14 00:47 . 2009-11-14 00:47 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ----a-w- c:\windows\system32\divx_xx0c.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ----a-w- c:\windows\system32\divx_xx07.dll
2009-11-14 00:47 . 2009-11-14 00:47 847872 ----a-w- c:\windows\system32\divx_xx0a.dll
2009-11-14 00:47 . 2009-11-14 00:47 843776 ----a-w- c:\windows\system32\divx_xx16.dll
2009-11-14 00:47 . 2009-11-14 00:47 839680 ----a-w- c:\windows\system32\divx_xx11.dll
2009-11-14 00:47 . 2009-11-14 00:47 696320 ----a-w- c:\windows\system32\DivX.dll
2009-10-22 15:59 . 2009-11-18 18:53 196565 ----a-w- c:\windows\system32\atiicdxx.dat
2009-08-14 12:36 . 2009-08-14 12:36 70936 ----a-w- c:\windows\system32\PhysXLoader.dll
2009-05-11 22:35 . 2009-12-23 13:43 118784 ----a-w- c:\windows\system32\atibtmon.exe
2009-02-18 18:55 . 2009-12-23 13:43 294912 ----a-w- c:\windows\system32\ATIODE.exe
2009-02-03 21:52 . 2009-12-23 13:43 45056 ----a-w- c:\windows\system32\ATIODCLI.exe
2009-01-24 18:26 . 2009-01-24 18:26 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-01-24 18:26 . 2009-01-21 10:13 -------- d-----w- c:\program files\DNA
2009-01-24 15:31 . 2009-01-24 15:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-01-24 12:31 . 2009-01-24 12:31 -------- d-----w- c:\program files\Trend Micro
2009-01-23 22:04 . 2009-01-23 22:02 -------- d-----w- c:\program files\ICQ7.0
2009-01-23 01:47 . 2009-11-18 18:51 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-01-21 11:27 . 2001-10-25 14:00 68916 ----a-w- c:\windows\system32\perfc005.dat
2009-01-21 11:27 . 2001-10-25 14:00 389938 ----a-w- c:\windows\system32\perfh005.dat
.
((((((((((((((((((((((((((((( SnapShot@2009-01-24_17.49.06 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-01-24 18:26 . 2009-01-24 18:26 16384 c:\windows\Temp\Perflib_Perfdata_5b0.dat
+ 2009-01-24 18:26 . 2009-01-24 18:26 16384 c:\windows\Temp\Perflib_Perfdata_1bc.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"EA Core"="c:\program files\Electronic Arts\EADM\Core.exe" [2009-04-29 3338240]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25623336]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2004-08-17 1667584]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2009-01-21 323392]
"ICQ"="c:\program files\ICQ7.0\ICQ.exe" [2010-01-12 133368]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"WiseStubReboot"="MSIEXEC" [X]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-04-12 16132608]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]
c:\documents and settings\zoltan\Nabˇdka Start\Programy\Po spuçtŘnˇ\
OpenOffice.org 3.0.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-1-15 393216]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\BitLord\\BitLord.exe"=
"c:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Valve\\hl.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\QIP Infium JadrisPack\\infium.exe"=
"c:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe"=
"c:\\Program Files\\EA GAMES\\Need for Speed Underground 2\\SPEED2.EXE"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\ICQ7.0\\ICQ.exe"=
"c:\\Program Files\\ICQ7.0\\aolload.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [19.11.2009 19:33 691696]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [18.11.2009 20:16 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [18.11.2009 20:16 20560]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys --> c:\windows\system32\drivers\nvhda32.sys [?]
.
.
------- Doplňkový sken -------
.
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files\ICQ7.0\ICQ.exe
FF - ProfilePath - c:\documents and settings\zoltan\Data aplikací\Mozilla\Firefox\Profiles\eoj2hxjx.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... 2.0.0.0&q=
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
AddRemove-DAEMON Tools Toolbar - c:\program files\DAEMON Tools Toolbar\uninst.exe
AddRemove-NSS - c:\program files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.3.0.44\InstStub.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-24 19:26
Windows 5.1.2600 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net
device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll >>UNKNOWN [0x89E541F8]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0xb80ecfc3
\Driver\ACPI -> ACPI.sys @ 0xb7e74cb8
\Driver\atapi -> 0x89e541f8
IoDeviceObjectType -> DeleteProcedure -> ntkrnlpa.exe @ 0x8058236c
ParseProcedure -> ntkrnlpa.exe @ 0x8058146a
\Device\Harddisk0\DR0 -> DeleteProcedure -> ntkrnlpa.exe @ 0x8058236c
ParseProcedure -> ntkrnlpa.exe @ 0x8058146a
NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC -> SendCompleteHandler -> NDIS.sys @ 0xb7d13ba0
PacketIndicateHandler -> NDIS.sys @ 0xb7d20b21
SendHandler -> NDIS.sys @ 0xb7cfe87b
Warning: possible MBR rootkit infection !
user & kernel MBR OK
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(732)
c:\windows\system32\Ati2evxx.dll
- - - - - - - > 'explorer.exe'(2820)
c:\windows\system32\msi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Celkový čas: 2009-01-24 19:27:58 - počítač byl restartován
ComboFix-quarantined-files.txt 2009-01-24 18:27
ComboFix2.txt 2009-01-24 17:49
Před spuštěním: Volných bajtů: 192 251 486 208
Po spuštění: Volných bajtů: 192 147 804 160
- - End Of File - - B9D7CE823D79D9E4D804AB5ED6A56945
:-) hijackthis:)Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:32:20, on 24.1.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DNA\btdna.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - HKCU\..\RunOnce: [WiseStubReboot] MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I "C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MSI" TRANSFORMS="C:\Program Files\Common Files\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MST" WISE_SETUP_EXE_PATH="c:\nvidia\displaydriver\190.62\english\PhysX_9.09.0814_SystemSoftware.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
--
End of file - 4371 bytes
--- a u combofixu.. kdyz sem to spustil tak mi 3x hlasite pipnul pc jinak nic ..
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Prosim o kontrolu logu
Start -> Spustit... a napiš do okna tento příkaz označený modře:
C:\WINDOWS\MBR.exe -f a dej Ok. mezi mbr.exe a -f je mezera
- pokud by tě bezpečnostní software upozornil na přepsání MBR tak to povol
- počkej až program proběhne a pak restartuj Pc
Po restartu Windows zadej červený příkaz (Start-->>Spustit):
C:\WINDOWS\MBR.exe a dej OK.
Spustí se znovu a log co vytvoří sem vlož (najdeš ho jako C:\WINDOWS\MBR.log)
C:\WINDOWS\MBR.exe -f a dej Ok. mezi mbr.exe a -f je mezera
- pokud by tě bezpečnostní software upozornil na přepsání MBR tak to povol
- počkej až program proběhne a pak restartuj Pc
Po restartu Windows zadej červený příkaz (Start-->>Spustit):
C:\WINDOWS\MBR.exe a dej OK.
Spustí se znovu a log co vytvoří sem vlož (najdeš ho jako C:\WINDOWS\MBR.log)
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: Prosim o kontrolu logu
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net
device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user & kernel MBR OK
device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user & kernel MBR OK
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Prosim o kontrolu logu
Odinstaluj ComboFix ( nutné ) .
ComboFix se odinstaluje takto:
Start-Spustit a zadej Combofix[mezera]/uninstall
Stáhni si T-Cleaner ( nutné - smaže vše po Combu,SDFixu,Avengeru,MWAVu atd.-stáhneš->spustíš)
(pozn.Pokud máš AVG nebo Aviru, před stažením T-Cleaneru a po dobu čištění deaktivuj AVG i Aviru (i rezidenty), následně T-Cleaner smaž a zapni si AVG, Aviru.)
*****************************************************************************************************************************************
Stáhni si OTL na Plochu.
Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Output klikni na minimal Output.Pod Standard Registry změň na All. Zatrhni LOP Check a Purity Check. File age změň na 14 days. Klikni na Run Scan. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj
ComboFix se odinstaluje takto:
Start-Spustit a zadej Combofix[mezera]/uninstall
Stáhni si T-Cleaner ( nutné - smaže vše po Combu,SDFixu,Avengeru,MWAVu atd.-stáhneš->spustíš)
(pozn.Pokud máš AVG nebo Aviru, před stažením T-Cleaneru a po dobu čištění deaktivuj AVG i Aviru (i rezidenty), následně T-Cleaner smaž a zapni si AVG, Aviru.)
*****************************************************************************************************************************************
Stáhni si OTL na Plochu.
Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Output klikni na minimal Output.Pod Standard Registry změň na All. Zatrhni LOP Check a Purity Check. File age změň na 14 days. Klikni na Run Scan. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 87 hostů