Jak se zbavit programu "Security Tool"? Vyřešeno

Sekce věnovaná virům a jiným škodlivým kódům, rovněž ale nástrojům, kterým se lze proti nim bránit…

Moderátoři: Mods_senior, Security team

daviddda
Level 1
Level 1
Příspěvky: 72
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod daviddda » 09 bře 2010 01:01

Zasilam log OTL.txt, log Extras.txt se nevytvoril. Mam test provest znova?


OTL logfile created on: 10/29/2009 1:27:52 AM - Run 2
OTL by OldTimer - Version 3.1.35.0 Folder = C:\Documents and Settings\Dejv\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1,014.00 Mb Total Physical Memory | 630.00 Mb Available Physical Memory | 62.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 84.00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 87.15 Gb Total Space | 33.78 Gb Free Space | 38.76% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: DAVID
Current User Name: Dejv
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 14 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
PRC - C:\Program Files\PC Connectivity Solution\Transports\NclBCBTSrv.exe (Nokia)
PRC - C:\Documents and Settings\Dejv\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
PRC - C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (Nokia)
PRC - C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (Nokia)
PRC - C:\Program Files\Common Files\Microsoft Shared\Help 9\dexplore.exe (Microsoft Corporation)
PRC - C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe (WDC)
PRC - c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
PRC - c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation)
PRC - c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe (Intel Corporation )
PRC - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation)
PRC - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe (Sony Corporation)
PRC - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Sony Corporation)
PRC - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe (Sony Corporation)
PRC - C:\WINDOWS\system32\igfxext.exe (Intel Corporation)
PRC - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation)
PRC - C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\Apoint\ApntEx.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\Apoint\Apvfb.exe (ALPS)


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\Dejv\Desktop\OTL.exe (OldTimer Tools)


========== Win32 Services (SafeList) ==========

SRV - (avast! Web Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (avast! Mail Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (FileZilla Server) -- C:\Program Files\FileZilla2005-03-Verze9-6\Copyofsource\Release\FileZilla server.exe ()
SRV - (FortifyBuildMonitor) -- C:\Program Files\Fortify Software\Fortify SCA 5.2\Core\private-bin\sca\FortifyBuildMonitorService.exe ( )
SRV - (WDBtnMgrSvc.exe) -- C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe (WDC)
SRV - (MSSQL$SQLEXPRESS) SQL Server (SQLEXPRESS) -- c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
SRV - (SQLAgent$SQLEXPRESS) SQL Server Agent (SQLEXPRESS) -- c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE (Microsoft Corporation)
SRV - (MSSQLServerADHelper100) -- c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE (Microsoft Corporation)
SRV - (SQLWriter) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation)
SRV - (SQLBrowser) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation)
SRV - (msvsmon90) -- c:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x86\msvsmon.exe (Microsoft Corporation)
SRV - (S24EventMonitor) -- C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe (Intel Corporation )
SRV - (EvtEng) -- C:\Program Files\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation)
SRV - (RegSrvc) -- C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation)
SRV - (VAIOMediaPlatform-IntegratedServer-AppServer) -- C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe (Sony Corporation)
SRV - (SSScsiSV) -- C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-Mobile-Gateway) -- C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe (Sony Corporation)
SRV - (VzFw) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe (Sony Corporation)
SRV - (VzCdbSvc) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Sony Corporation)
SRV - (Vcsw) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe (Sony Corporation)
SRV - (VAIO Entertainment TV Device Arbitration Service) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe (Sony Corporation)
SRV - (MSCSPTISRV) -- C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe (Sony Corporation)
SRV - (PACSPTISVR) -- C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe (Sony Corporation)
SRV - (SPTISRV) -- C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-IntegratedServer-UPnP) VAIO Media Integrated Server (UPnP) -- C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-IntegratedServer-HTTP) VAIO Media Integrated Server (HTTP) -- C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe (Sony Corporation)
SRV - (Image Converter video recording monitor for VAIO Entertainment) -- C:\Program Files\Sony\Image Converter 2\IcVzMon.exe (Sony Corporation)
SRV - (VAIO Event Service) -- C:\Program Files\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation)


========== Driver Services (SafeList) ==========

DRV - (aswTdi) -- C:\WINDOWS\system32\drivers\aswTdi.sys (ALWIL Software)
DRV - (aswSP) -- C:\WINDOWS\system32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswRdr) -- C:\WINDOWS\system32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswMon2) -- C:\WINDOWS\system32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswFsBlk) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys (ALWIL Software)
DRV - (Aavmker4) -- C:\WINDOWS\system32\drivers\aavmker4.sys (ALWIL Software)
DRV - (UsbserFilt) -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys (Nokia)
DRV - (nmwcdc) -- C:\WINDOWS\system32\drivers\ccdcmbo.sys (Nokia)
DRV - (nmwcd) -- C:\WINDOWS\system32\drivers\ccdcmb.sys (Nokia)
DRV - (upperdev) -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys (Nokia)
DRV - (LMouFilt) -- C:\WINDOWS\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- C:\WINDOWS\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (pccsmcfd) -- C:\WINDOWS\system32\drivers\pccsmcfd.sys (Nokia)
DRV - (RsFx0102) -- C:\WINDOWS\system32\drivers\RsFx0102.sys (Microsoft Corporation)
DRV - (usbaudio) USB Audio Driver (WDM) -- C:\WINDOWS\system32\drivers\usbaudio.sys (Microsoft Corporation)
DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (LVUSBSta) -- C:\WINDOWS\system32\drivers\LVUSBSta.sys (Logitech Inc.)
DRV - (PID_PEPI) Logitech QuickCam IM(PID_PEPI) -- C:\WINDOWS\system32\drivers\LV302V32.SYS (Logitech Inc.)
DRV - (BTWUSB) -- C:\WINDOWS\system32\drivers\btwusb.sys (Broadcom Corporation.)
DRV - (btwhid) -- C:\WINDOWS\system32\drivers\btwhid.sys (Broadcom Corporation.)
DRV - (BTDriver) -- C:\WINDOWS\system32\drivers\btport.sys (Broadcom Corporation.)
DRV - (btwmodem) -- C:\WINDOWS\system32\drivers\btwmodem.sys (Broadcom Corporation.)
DRV - (BTKRNL) -- C:\WINDOWS\system32\drivers\btkrnl.sys (Broadcom Corporation.)
DRV - (btaudio) -- C:\WINDOWS\system32\drivers\btaudio.sys (Broadcom Corporation.)
DRV - (tifmsony) -- C:\WINDOWS\system32\drivers\tifmsony.sys (Texas Instruments)
DRV - (w29n51) Intel(R) -- C:\WINDOWS\system32\drivers\w29n51.sys (Intel® Corporation)
DRV - (s24trans) -- C:\WINDOWS\system32\drivers\s24trans.sys (Intel Corporation)
DRV - (HSF_DPV) -- C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)
DRV - (HSFHWAZL) -- C:\WINDOWS\system32\drivers\HSFHWAZL.sys (Conexant Systems, Inc.)
DRV - (winachsf) -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (vserial) -- C:\WINDOWS\system32\drivers\vserial.sys (ELTIMA Software)
DRV - (vsbus) -- C:\WINDOWS\system32\drivers\vsb.sys (ELTIMA Software)
DRV - (LEX_AS_NIC_SERVICE_YNOS) -- C:\WINDOWS\system32\drivers\ExpasAG.sys (Atheros Communications, Inc.)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (ApfiltrService) -- C:\WINDOWS\system32\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV - (DMICall) -- C:\WINDOWS\system32\drivers\DMICall.sys (Sony Corporation)
DRV - (SNC) -- C:\WINDOWS\system32\drivers\SonyNC.sys (Sony Corporation)


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.sony.com/vaiopeople
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.update: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "www.gmx.net"
FF - prefs.js..extensions.enabledItems: {DCBD1271-D228-4082-9FBC-36D9B7660B03}:1.1.8
FF - prefs.js..extensions.enabledItems: xmlfiller@software602.cz:3.1.6
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.1
FF - prefs.js..extensions.enabledItems: {8b86149f-01fb-4842-9dd8-4d7eb02fd055}:0.20.0
FF - prefs.js..extensions.enabledItems: autopager@mozilla.org:0.5.3.5
FF - prefs.js..extensions.enabledItems: {ca0849e8-2c76-42ae-9abe-34e14d337acf}:1.90
FF - prefs.js..extensions.enabledItems: piclens@cooliris.com:1.11.1
FF - prefs.js..extensions.enabledItems: de-DE@dictionaries.addons.mozilla.org:1.0.2
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.6.4
FF - prefs.js..extensions.enabledItems: firedownload@mozilla.org:1.1.7
FF - prefs.js..extensions.enabledItems: {1018e4d6-728f-4b20-ad56-37578a4de76b}:3.3.17
FF - prefs.js..extensions.enabledItems: {ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}:1.2.1
FF - prefs.js..extensions.enabledItems: {5C46D283-ABDE-4dce-B83C-08881401921C}:1.8.4
FF - prefs.js..extensions.enabledItems: {EF522540-89F5-46b9-B6FE-1829E2B572C6}:3.22
FF - prefs.js..extensions.enabledItems: hidemenubar@moztw.org:1.0.20090918
FF - prefs.js..extensions.enabledItems: {81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}:6.2.4.0
FF - prefs.js..extensions.enabledItems: {9AA46F4F-4DC7-4c06-97AF-5035170634FE}:3.2.9
FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.723
FF - prefs.js..extensions.enabledItems: quickdrag@mozilla.ktechcomputing.com:2.0.2.1
FF - prefs.js..extensions.enabledItems: {29c4afe1-db19-4298-8785-fcc94d1d6c1d}:0.6.2009050101
FF - prefs.js..extensions.enabledItems: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20090918
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.5
FF - prefs.js..network.proxy.ftp: "10.0.13.89"
FF - prefs.js..network.proxy.http: "10.0.13.91"
FF - prefs.js..network.proxy.ssl: "255.255.255.248"

FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/08/24 16:45:42 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2009/10/25 06:26:18 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.5\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/10/27 06:49:34 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.5\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/10/28 06:35:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Netscape Browser 8.1.0.0\Extensions\\Components: C:\\Program Files\\Netscape\\Netscape Browser\Components [2009/05/18 22:28:41 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Netscape Browser 8.1.0.0\Extensions\\Plugins: C:\\Program Files\\Netscape\\Netscape Browser\Plugins [2009/10/28 00:06:36 | 000,000,000 | ---D | M]

[2009/05/18 15:32:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Extensions
[2009/05/18 15:32:21 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/10/29 03:27:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions
[2009/09/27 11:35:36 | 000,000,000 | ---D | M] (Flagfox) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
[2009/08/20 13:57:04 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{29c4afe1-db19-4298-8785-fcc94d1d6c1d}
[2009/10/23 11:03:37 | 000,000,000 | ---D | M] (Google Shortcuts) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{5C46D283-ABDE-4dce-B83C-08881401921C}
[2009/08/20 18:40:37 | 000,000,000 | ---D | M] (iMacros for Firefox) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}
[2009/07/27 11:44:11 | 000,000,000 | ---D | M] (All-in-One Gestures) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{8b86149f-01fb-4842-9dd8-4d7eb02fd055}
[2009/09/27 11:35:41 | 000,000,000 | ---D | M] (ImTranslator) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}
[2009/09/27 11:35:49 | 000,000,000 | ---D | M] (WOT) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2009/09/27 11:35:40 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2009/09/27 11:35:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{ca0849e8-2c76-42ae-9abe-34e14d337acf}
[2009/08/20 18:40:38 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2009/05/19 17:17:56 | 000,000,000 | ---D | M] () -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{DCBD1271-D228-4082-9FBC-36D9B7660B03}
[2009/09/27 11:35:45 | 000,000,000 | ---D | M] (FoxTab) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}
[2009/06/12 15:01:49 | 000,000,000 | ---D | M] (GooglePreview) -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\{EF522540-89F5-46b9-B6FE-1829E2B572C6}
[2009/09/27 11:35:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\autopager@mozilla.org
[2009/10/03 10:57:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\de-DE@dictionaries.addons.mozilla.org
[2009/09/04 20:40:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\firedownload@mozilla.org
[2009/09/27 11:35:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\hidemenubar@moztw.org
[2009/08/20 18:40:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\piclens@cooliris.com
[2009/05/30 13:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Mozilla\Firefox\Profiles\73p4clcx.default\extensions\quickdrag@mozilla.ktechcomputing.com
[2009/10/28 06:06:19 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009/11/08 23:45:24 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/10/28 06:35:43 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\xmlfiller@software602.cz
[2009/11/08 23:45:24 | 000,023,512 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2009/11/08 23:45:24 | 000,137,176 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2009/11/08 23:45:28 | 000,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2006/10/26 19:12:16 | 000,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
[2003/07/15 05:56:52 | 000,013,888 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
[2009/08/20 14:03:08 | 000,001,394 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml
[2009/08/20 14:03:08 | 000,002,193 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\answers.xml
[2009/08/20 14:03:08 | 000,001,534 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml
[2009/08/20 14:03:08 | 000,002,344 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml
[2009/08/20 14:03:08 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2009/08/20 14:03:08 | 000,001,178 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia.xml

O1 HOSTS File: ([2010/03/07 09:42:12 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (WebTransBHO Class) - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Program Files\TranslatorPC\WEBIE.DLL ()
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (WebTranslator) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Program Files\TranslatorPC\WEBIE.DLL ()
O3 - HKCU\..\Toolbar\ShellBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O4 - HKLM..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
O4 - HKLM..\Run: [PartSeal] C:\WINDOWS\SONYSYS\VAIO Recovery\PartSeal.exe (Sony Electronics Inc)
O4 - HKLM..\Run: [VAIO Recovery] C:\WINDOWS\SONYSYS\VAIO Recovery\PartSeal.exe (Sony Electronics Inc)
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - HKCU..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Program Files\TranslatorPC\WEBIE.DLL ()
O9 - Extra Button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\starsi Office\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Translator Options - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Program Files\TranslatorPC\WEBIE.DLL ()
O9 - Extra 'Tools' menuitem : Translate Selected Text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Program Files\TranslatorPC\WEBIE.DLL ()
O9 - Extra 'Tools' menuitem : Translate Web Page - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Program Files\TranslatorPC\WEBIE.DLL ()
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_06)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_06)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_06)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 88.83.173.253 81.90.173.240
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\VESWinlogon: DllName - VESWinlogon.dll - C:\WINDOWS\System32\VESWinlogon.dll (Sony Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\VAIO Light Flo Wallpaper TrueColor 1280x800.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\VAIO Light Flo Wallpaper TrueColor 1280x800.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{a6cfb736-43b3-11de-b86a-00166f7194bc}\Shell\AutoRun\command - "" = C:\WINDOWS\System32\setup.exe -- [2008/04/14 04:42:36 | 000,023,040 | ---- | M] (Microsoft Corporation)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*

Reklama
daviddda
Level 1
Level 1
Příspěvky: 72
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod daviddda » 09 bře 2010 01:02

========== Files/Folders - Created Within 14 Days ==========

[2009/12/16 19:43:27 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspaint.exe
[2009/12/14 08:08:23 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\csrsrv.dll
[2009/12/08 10:23:28 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shlwapi.dll
[2009/11/27 17:07:35 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msvidc32.dll
[2009/11/27 17:07:34 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msrle32.dll
[2009/11/09 14:24:12 | 000,000,000 | ---D | C] -- C:\lint
[2009/11/09 12:07:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2009/11/08 23:35:29 | 001,372,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6.dll
[2009/11/08 23:35:29 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6r.dll
[2009/11/08 23:35:22 | 000,229,376 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2cqag.dll
[2009/11/08 23:35:22 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\aaclient.dll
[2009/11/08 23:35:21 | 001,888,992 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ati3duag.dll
[2009/11/08 23:35:21 | 000,870,784 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ati3d1ag.dll
[2009/11/08 23:35:21 | 000,516,768 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ativvaxx.dll
[2009/11/08 23:35:21 | 000,377,984 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2dvaa.dll
[2009/11/08 23:35:21 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\azroles.dll
[2009/11/08 23:35:21 | 000,201,728 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2dvag.dll
[2009/11/08 23:35:21 | 000,032,768 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativtmxx.dll
[2009/11/08 23:35:21 | 000,023,040 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativmvxx.ax
[2009/11/08 23:35:21 | 000,009,728 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativdaxx.ax
[2009/11/08 23:35:21 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx4.dll
[2009/11/08 23:35:20 | 000,650,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3ui.dll
[2009/11/08 23:35:20 | 000,184,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapp3hst.dll
[2009/11/08 23:35:20 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapphost.dll
[2009/11/08 23:35:20 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eappcfg.dll
[2009/11/08 23:35:20 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eappgnui.dll
[2009/11/08 23:35:20 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapqec.dll
[2009/11/08 23:35:20 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3cfg.dll
[2009/11/08 23:35:20 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3msm.dll
[2009/11/08 23:35:20 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dhcpqec.dll
[2009/11/08 23:35:20 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eappprxy.dll
[2009/11/08 23:35:20 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3gpclnt.dll
[2009/11/08 23:35:20 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dimsroam.dll
[2009/11/08 23:35:20 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapolqec.dll
[2009/11/08 23:35:20 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3api.dll
[2009/11/08 23:35:20 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3dlg.dll
[2009/11/08 23:35:19 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ieencode.dll
[2009/11/08 23:35:19 | 000,032,285 | ---- | C] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\hsfcisp2.dll
[2009/11/08 23:35:18 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\l2gpstore.dll
[2009/11/08 23:35:18 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpash.dll
[2009/11/08 23:35:18 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdnepr.dll
[2009/11/08 23:35:18 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdiultn.dll
[2009/11/08 23:35:18 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbhc.dll
[2009/11/08 23:35:17 | 001,737,856 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\mtxparhd.dll
[2009/11/08 23:35:17 | 000,397,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcex.dll
[2009/11/08 23:35:17 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\microsoft.managementconsole.dll
[2009/11/08 23:35:17 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssha.dll
[2009/11/08 23:35:17 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcfxcommon.dll
[2009/11/08 23:35:17 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msshavmsg.dll
[2009/11/08 23:35:17 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcperf.exe
[2009/11/08 23:35:17 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\napipsec.dll
[2009/11/08 23:35:16 | 004,274,816 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nv4_disp.dll
[2009/11/08 23:35:16 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\napmontr.dll
[2009/11/08 23:35:16 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\napstat.exe
[2009/11/08 23:35:16 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qagent.dll
[2009/11/08 23:35:16 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\onex.dll
[2009/11/08 23:35:15 | 000,397,056 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\s3gnb.dll
[2009/11/08 23:35:15 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rhttpaa.dll
[2009/11/08 23:35:15 | 000,286,792 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slextspk.dll
[2009/11/08 23:35:15 | 000,188,508 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slgen.dll
[2009/11/08 23:35:15 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qutil.dll
[2009/11/08 23:35:15 | 000,073,832 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slcoinst.dll
[2009/11/08 23:35:15 | 000,073,796 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slserv.exe
[2009/11/08 23:35:15 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qcliprov.dll
[2009/11/08 23:35:15 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rasqec.dll
[2009/11/08 23:35:15 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsgqec.dll
[2009/11/08 23:35:15 | 000,032,866 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slrundll.exe
[2009/11/08 23:35:15 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\setupn.exe
[2009/11/08 23:35:15 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\verclsid.exe
[2009/11/08 23:35:14 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wlanapi.dll
[2009/11/08 23:35:12 | 000,032,866 | ---- | C] (Smart Link) -- C:\WINDOWS\slrundll.exe
[2009/11/08 23:35:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2009/11/08 23:35:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2009/11/08 23:35:07 | 000,000,000 | ---D | C] -- C:\Program Files\msn
[2009/11/08 23:35:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2009/11/08 23:35:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2009/11/08 23:29:40 | 000,004,255 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv01nt5.dll
[2009/11/08 23:29:40 | 000,003,967 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv02nt5.dll
[2009/11/08 23:29:40 | 000,003,775 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv11nt5.dll
[2009/11/08 23:29:40 | 000,003,711 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv09nt5.dll
[2009/11/08 23:29:40 | 000,003,647 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv07nt5.dll
[2009/11/08 23:29:40 | 000,003,615 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv05nt5.dll
[2009/11/08 23:29:40 | 000,003,135 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv08nt5.dll
[2009/11/08 23:29:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2009/11/08 23:29:39 | 000,701,440 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys
[2009/11/08 23:29:39 | 000,327,040 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtaa.sys
[2009/11/08 23:29:39 | 000,063,663 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1rvxx.sys
[2009/11/08 23:29:39 | 000,056,623 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1btxx.sys
[2009/11/08 23:29:39 | 000,043,008 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\drivers\amdagp.sys
[2009/11/08 23:29:39 | 000,036,463 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1tuxx.sys
[2009/11/08 23:29:39 | 000,034,735 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xsxx.sys
[2009/11/08 23:29:39 | 000,030,671 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1raxx.sys
[2009/11/08 23:29:39 | 000,029,455 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xbxx.sys
[2009/11/08 23:29:39 | 000,026,367 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1snxx.sys
[2009/11/08 23:29:39 | 000,021,343 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1ttxx.sys
[2009/11/08 23:29:39 | 000,012,047 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1pdxx.sys
[2009/11/08 23:29:39 | 000,011,615 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1mdxx.sys
[2009/11/08 23:29:38 | 000,104,960 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinrvxx.sys
[2009/11/08 23:29:38 | 000,073,216 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atintuxx.sys
[2009/11/08 23:29:38 | 000,063,488 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxsxx.sys
[2009/11/08 23:29:38 | 000,057,856 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinbtxx.sys
[2009/11/08 23:29:38 | 000,052,224 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinraxx.sys
[2009/11/08 23:29:38 | 000,036,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bthprint.sys
[2009/11/08 23:29:38 | 000,031,744 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxbxx.sys
[2009/11/08 23:29:38 | 000,028,672 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinsnxx.sys
[2009/11/08 23:29:38 | 000,025,471 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv04nt5.dll
[2009/11/08 23:29:38 | 000,021,183 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv01nt5.dll
[2009/11/08 23:29:38 | 000,017,279 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv10nt5.dll
[2009/11/08 23:29:38 | 000,015,423 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\ch7xxnt5.dll
[2009/11/08 23:29:38 | 000,014,336 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinpdxx.sys
[2009/11/08 23:29:38 | 000,014,143 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv06nt5.dll
[2009/11/08 23:29:38 | 000,013,824 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinttxx.sys
[2009/11/08 23:29:38 | 000,013,824 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinmdxx.sys
[2009/11/08 23:29:38 | 000,011,359 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv02nt5.dll
[2009/11/08 23:29:36 | 001,897,408 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nv4_mini.sys
[2009/11/08 23:29:36 | 001,309,184 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlstrm.sys
[2009/11/08 23:29:36 | 000,452,736 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\drivers\mtxparhm.sys
[2009/11/08 23:29:36 | 000,180,360 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\ntmtlfax.sys
[2009/11/08 23:29:36 | 000,166,912 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\drivers\s3gnbm.sys
[2009/11/08 23:29:36 | 000,126,686 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlmnt5.sys
[2009/11/08 23:29:36 | 000,030,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\rndismpx.sys
[2009/11/08 23:29:36 | 000,013,776 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\recagent.sys
[2009/11/08 23:29:36 | 000,012,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mutohpen.sys
[2009/11/08 23:29:35 | 000,404,990 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slntamr.sys
[2009/11/08 23:29:35 | 000,129,535 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slnt7554.sys
[2009/11/08 23:29:35 | 000,095,424 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slnthal.sys
[2009/11/08 23:29:35 | 000,040,960 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\WINDOWS\System32\drivers\sisagp.sys
[2009/11/08 23:29:35 | 000,013,240 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slwdmsup.sys
[2009/11/08 23:29:35 | 000,005,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\smbali.sys
[2009/11/08 23:29:35 | 000,003,901 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\siint5.dll
[2009/11/08 23:29:34 | 000,025,471 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv10nt.sys
[2009/11/08 23:29:34 | 000,022,271 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv06nt.sys
[2009/11/08 23:29:34 | 000,011,935 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv11nt.sys
[2009/11/08 23:29:34 | 000,011,871 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv09nt.sys
[2009/11/08 23:29:34 | 000,011,807 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv07nt.sys
[2009/11/08 23:29:34 | 000,011,325 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\vchnt5.dll
[2009/11/08 23:29:34 | 000,011,295 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv08nt.sys
[2009/11/08 23:25:27 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2009/11/08 23:25:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2009/10/29 06:07:09 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2009/10/29 03:29:55 | 000,554,496 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Dejv\Desktop\OTL.exe
[2009/10/28 15:13:36 | 000,000,000 | ---D | C] -- C:\Preklad Marc
[2009/10/28 12:39:56 | 000,000,000 | ---D | C] -- C:\Zaloha Nokie2 z 6.3.2010
[2009/10/28 10:10:16 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\browserchoice.exe
[2009/10/28 08:20:18 | 005,115,832 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Dejv\Desktop\mbam-setup.exe
[2009/10/28 07:32:04 | 000,162,512 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2009/10/28 07:32:04 | 000,019,024 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2009/10/28 07:32:02 | 000,023,376 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2009/10/28 07:32:00 | 000,046,672 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2009/10/28 07:31:58 | 000,100,432 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2009/10/28 07:31:58 | 000,094,800 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2009/10/28 07:31:58 | 000,028,880 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2009/10/28 07:30:47 | 000,153,184 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe
[2009/10/28 07:30:47 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\avastSS.scr
[2009/10/28 07:00:32 | 000,812,344 | ---- | C] (Trend Micro Inc.) -- C:\Documents and Settings\Dejv\Desktop\HijackThisInstaller.exe
[2009/10/27 06:49:07 | 000,000,000 | ---D | C] -- C:\Program Files\Software602
[2009/10/27 03:46:51 | 000,000,000 | ---D | C] -- C:\Program Files\P2PFilter
[2009/10/27 01:30:15 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2009/10/27 01:30:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2009/10/27 01:26:21 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2009/10/27 01:26:21 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2009/10/27 01:26:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2009/10/27 01:19:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2009/10/26 21:52:10 | 000,032,377 | ---- | C] (B-phreaks) -- C:\WINDOWS\System32\drivers\prodigy.sys
[2009/10/26 21:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\NSS
[2009/10/26 14:14:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Application Data\FileZilla
[2009/10/26 08:29:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Recent
[2009/10/26 03:09:29 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2009/10/26 01:21:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Application Data\Malwarebytes
[2009/10/26 01:21:10 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/10/26 01:21:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2009/10/26 01:21:06 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/10/26 01:21:05 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2009/10/26 00:24:48 | 000,000,000 | ---D | C] -- C:\Program Files\HiJack-SpywareScanner
[2009/10/26 00:13:10 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbser.sys
[2009/10/25 07:19:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Desktop\Zaloha 5530
[2009/10/25 07:09:22 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2009/10/25 06:57:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Desktop\Plocha
[2009/10/25 06:26:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PCSuite
[2009/10/25 06:25:36 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia
[2009/10/25 06:23:12 | 000,018,816 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys
[2009/10/25 06:21:55 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution
[2009/10/25 06:21:03 | 000,007,936 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys
[2009/10/25 06:20:58 | 000,007,936 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys
[2009/10/25 06:20:56 | 000,022,016 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys
[2009/10/25 06:20:53 | 000,660,480 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll
[2009/10/25 06:20:53 | 000,017,664 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys
[2009/10/25 06:12:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Installations
[2009/10/25 03:57:46 | 000,000,000 | ---D | C] -- C:\Zaloha Nokie 5530
[2009/10/24 22:31:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\avg9
[2009/10/24 19:02:27 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aclayers.dll
[2009/10/24 14:01:28 | 000,000,000 | ---D | C] -- C:\Program Files\starsi Office
[2009/10/24 13:33:43 | 000,014,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsgXP_2k3.dll
[2009/10/23 23:40:06 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla2009-Verze9-34 Nepouzivam - nejnovejsi verze - jen na zkousku
[2009/10/23 20:15:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\FreeRIP
[2009/10/23 20:15:04 | 000,000,000 | ---D | C] -- C:\Program Files\AudioFreeRIP3-CD to MP3
[2009/10/23 19:43:13 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla2004-07-Verze9-2 Nepouzivam
[2009/10/23 17:50:49 | 000,000,000 | ---D | C] -- C:\Program Files\SopCast
[2009/10/23 16:43:58 | 000,000,000 | -H-D | C] -- C:\WINDOWS\PIF
[2009/10/23 13:30:29 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla2005-03-Verze9-6
[2009/10/23 13:18:50 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla2009-06-Verze9-32
[2009/10/23 12:33:44 | 000,000,000 | ---D | C] -- C:\Program Files\StopWatch
[2009/10/23 12:27:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\{4748A871-C4A6-4850-9FB2-30F269897E32}
[2009/10/23 12:27:29 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Steema Software
[2009/10/23 12:27:29 | 000,000,000 | ---D | C] -- C:\Program Files\Riverblade
[2009/10/23 12:25:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2009/10/23 12:09:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Application Data\JLC's Software
[2009/10/23 12:09:00 | 000,000,000 | ---D | C] -- C:\Program Files\JLC's Software
[2009/10/23 11:03:19 | 000,000,000 | ---D | C] -- C:\Program Files\vanBasco's Karaoke Player
[2009/10/23 11:01:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Desktop\karaoke
[2009/10/23 10:45:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\AdobeUM
[2009/10/23 10:44:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Adobe
[2009/10/23 10:44:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2009/10/23 10:41:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Local Settings\Application Data\WMTools Downloaded Files
[2009/10/23 09:51:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Local Settings\Application Data\Fortify
[2009/10/23 09:32:50 | 000,000,000 | ---D | C] -- C:\Program Files\Fortify Software
[2009/10/23 09:03:23 | 000,000,000 | ---D | C] -- C:\Program Files\FortifySourceCodeAnalyser
[2009/10/23 08:54:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Local Settings\Application Data\Downloaded Installations
[2009/10/23 04:50:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Readon
[2009/10/23 04:41:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DivX Shared
[2009/10/23 04:40:59 | 000,000,000 | ---D | C] -- C:\Program Files\DivX
[2009/10/23 04:36:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Local Settings\Application Data\Readon_Technology
[2009/10/23 04:36:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\My Documents\Readon Player
[2009/10/23 04:13:00 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dejv\My Documents\Shareaza Downloads
[2009/10/23 04:13:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Local Settings\Application Data\Shareaza
[2009/10/23 04:07:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Application Data\Shareaza
[2009/10/23 04:06:15 | 000,000,000 | ---D | C] -- C:\Program Files\Shareaza
[2009/10/23 02:02:02 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla2006-05-Verze9-16c - Jenom vyzkousim
[2009/10/23 00:53:39 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla2006-04-Verze9-15
[2009/10/23 00:08:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2009/10/22 18:38:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Application Data\Nseries
[2009/10/22 18:28:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Nokia
[2009/10/22 18:08:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Bluetooth Software
[2009/10/22 18:08:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\My Documents\Bluetooth Exchange Folder
[2009/10/22 18:06:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Application Data\Leadertech
[2009/10/22 18:05:42 | 000,047,104 | ---- | C] (ELTIMA Software) -- C:\WINDOWS\System32\drivers\vserial.sys
[2009/10/22 18:05:42 | 000,018,167 | ---- | C] (ELTIMA Software) -- C:\WINDOWS\System32\drivers\vsb.sys
[2009/10/22 18:04:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\LogiShrd
[2009/10/22 17:56:31 | 000,053,248 | ---- | C] (Logitech, Inc.) -- C:\WINDOWS\System32\LBTCoIns.DLL
[2009/10/22 17:52:34 | 000,106,557 | ---- | C] (Broadcom Corporation.) -- C:\WINDOWS\System32\btw_ci.dll
[2009/10/22 17:52:33 | 000,067,672 | ---- | C] (Broadcom Corporation.) -- C:\WINDOWS\System32\drivers\btwusb.sys
[2009/10/22 17:52:33 | 000,030,285 | ---- | C] (Broadcom Corporation.) -- C:\WINDOWS\System32\drivers\btwmodem.sys
[2009/10/22 17:52:32 | 000,047,907 | ---- | C] (Broadcom Corporation.) -- C:\WINDOWS\System32\drivers\btwhid.sys
[2009/10/22 17:52:30 | 000,030,459 | ---- | C] (Broadcom Corporation.) -- C:\WINDOWS\System32\drivers\btport.sys
[2009/10/22 17:52:27 | 000,863,402 | ---- | C] (Broadcom Corporation.) -- C:\WINDOWS\System32\drivers\btkrnl.sys
[2009/10/22 17:52:24 | 000,329,901 | ---- | C] (Broadcom Corporation.) -- C:\WINDOWS\System32\drivers\btaudio.sys
[2009/10/22 17:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\WIDCOMM
[2009/10/22 17:49:02 | 000,000,000 | ---D | C] -- C:\WTLHeaderForCplusPlusWindowsDevelopment
[2009/10/22 17:03:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Local Settings\Application Data\Logitech-LS
[2009/10/22 16:56:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logitech
[2009/10/22 16:56:10 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC71DEU.DLL
[2009/10/22 16:56:10 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC71ITA.DLL
[2009/10/22 16:56:10 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC71ESP.DLL
[2009/10/22 16:56:10 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC71ENU.DLL
[2009/10/22 16:56:10 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC71KOR.DLL
[2009/10/22 16:56:10 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC71JPN.DLL
[2009/10/22 16:56:10 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC71CHT.DLL
[2009/10/22 16:56:10 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC71CHS.DLL
[2009/10/22 16:55:16 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech
[2009/10/22 09:00:10 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip
[2009/10/22 06:02:32 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla2004-08-Verze9-3 Nepouzivam - moc stary nejde compilovat
[2009/10/22 00:43:49 | 000,000,000 | ---D | C] -- C:\Program Files\Readon Technology
[2009/10/21 06:38:36 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\strmfilt.dll
[2009/10/21 06:38:36 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpapi.dll
[2009/10/21 04:32:00 | 000,000,000 | ---D | C] -- C:\Program Files\Nsasoft
[2009/10/21 04:05:05 | 000,017,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
[2009/10/21 03:56:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2009/10/21 03:47:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Local Settings\Application Data\IsolatedStorage
[2009/10/21 03:47:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Application Data\PC Suite
[2009/10/21 03:46:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Local Settings\Application Data\Nokia
[2009/10/21 03:41:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dejv\Application Data\Nokia
[2009/10/21 03:27:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NokiaMusic
[2009/10/21 03:25:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\muveeInstall
[2009/10/21 03:23:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\Globalization
[2009/10/21 03:07:12 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2009/10/21 03:06:23 | 000,091,136 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcls.dll
[2009/10/21 03:06:23 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia
[2009/10/21 03:02:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\UMDF
[2009/10/21 03:02:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2009/10/20 17:20:16 | 000,265,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\http.sys
[2009/06/01 21:45:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google

========== Files - Modified Within 14 Days ==========

[2010/03/08 20:30:06 | 000,000,420 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{5AB07CB9-DE86-4B09-84D5-1AD69752FB73}.job
[2010/03/08 19:33:57 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010/03/07 09:42:12 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010/02/12 11:03:03 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\browserchoice.exe
[2010/02/11 19:53:57 | 000,038,848 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\avastSS.scr
[2010/02/11 19:53:36 | 000,153,184 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe
[2010/02/11 19:42:34 | 000,046,672 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2010/02/11 19:42:13 | 000,162,512 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2010/02/11 19:39:01 | 000,023,376 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2010/02/11 19:38:34 | 000,100,432 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2010/02/11 19:38:31 | 000,094,800 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2010/02/11 19:38:23 | 000,019,024 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010/02/11 19:38:07 | 000,028,880 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2010/01/07 16:07:14 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/01/07 16:07:04 | 000,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/12/31 17:50:03 | 000,353,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srv.sys
[2009/12/21 20:14:05 | 001,208,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\urlmon.dll
[2009/12/21 20:14:05 | 000,916,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll
[2009/12/21 20:14:04 | 005,942,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll
[2009/12/21 20:14:04 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\occache.dll
[2009/12/21 20:14:03 | 001,985,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2009/12/21 20:14:03 | 001,469,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcpl.cpl
[2009/12/21 20:14:03 | 001,469,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcpl.cpl
[2009/12/21 20:14:03 | 000,594,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeeds.dll
[2009/12/21 20:14:03 | 000,594,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2009/12/21 20:14:03 | 000,184,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iepeers.dll
[2009/12/21 20:14:03 | 000,184,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iepeers.dll
[2009/12/21 20:14:03 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeedsbs.dll
[2009/12/21 20:14:03 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2009/12/21 20:14:03 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jsproxy.dll
[2009/12/21 20:14:03 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsproxy.dll
[2009/12/21 20:14:02 | 011,070,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2009/12/21 20:14:01 | 000,387,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iedkcs32.dll
[2009/12/21 20:14:01 | 000,387,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedkcs32.dll
[2009/12/21 14:19:18 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ie4uinit.exe
[2009/12/21 14:19:18 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ie4uinit.exe
[2009/12/16 19:43:27 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mspaint.exe
[2009/12/16 19:43:27 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspaint.exe
[2009/12/14 08:08:23 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\csrsrv.dll
[2009/12/14 08:08:23 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\csrsrv.dll
[2009/12/09 06:53:44 | 000,726,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jscript.dll
[2009/12/09 06:53:44 | 000,726,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jscript.dll
[2009/12/08 20:27:51 | 002,189,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntoskrnl.exe
[2009/12/08 20:27:51 | 002,189,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
[2009/12/08 20:26:15 | 002,145,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
[2009/12/08 19:43:51 | 002,023,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
[2009/12/08 19:43:50 | 002,066,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntkrnlpa.exe
[2009/12/08 19:43:50 | 002,066,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlpa.exe
[2009/12/08 10:23:28 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shlwapi.dll
[2009/12/04 19:22:22 | 000,455,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
[2009/11/27 18:11:44 | 001,291,776 | ---- | M] () -- C:\WINDOWS\System32\quartz.dll
[2009/11/27 18:11:44 | 001,291,776 | ---- | M] () -- C:\WINDOWS\System32\dllcache\quartz.dll
[2009/11/27 18:11:44 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msyuv.dll
[2009/11/27 17:07:35 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msvidc32.dll
[2009/11/27 17:07:35 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsbyuv.dll
[2009/11/27 17:07:34 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avifil32.dll
[2009/11/27 17:07:34 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\avifil32.dll
[2009/11/27 17:07:34 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iyuv_32.dll
[2009/11/27 17:07:34 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msrle32.dll
[2009/11/21 16:51:42 | 001,206,508 | ---- | M] () -- C:\WINDOWS\System32\dllcache\sysmain.sdb
[2009/11/21 16:51:04 | 000,471,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aclayers.dll
[2009/11/11 01:45:32 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/11/11 01:44:48 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/11/11 01:44:46 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/11/11 01:44:44 | 1063,768,064 | -HS- | M] () -- C:\hiberfil.sys
[2009/11/11 01:42:09 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Dejv\ntuser.ini
[2009/11/08 23:29:12 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2009/10/30 21:25:57 | 001,952,324 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\Nokia_5530_XpressMusic_UG_cs.pdf
[2009/10/29 08:17:23 | 000,554,496 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Dejv\Desktop\OTL.exe
[2009/10/29 08:07:12 | 008,126,464 | ---- | M] () -- C:\Documents and Settings\Dejv\ntuser.dat
[2009/10/29 07:55:58 | 000,187,392 | ---- | M] () -- C:\Documents and Settings\Dejv\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/10/29 07:52:52 | 000,001,268 | ---- | M] () -- C:\WINDOWS\TRNCOM.INI
[2009/10/29 03:14:25 | 000,210,432 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\T-Cleaner.exe
[2009/10/28 11:18:46 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2009/10/28 08:21:34 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/10/28 08:20:35 | 005,115,832 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Dejv\Desktop\mbam-setup.exe
[2009/10/28 07:32:05 | 000,001,700 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk
[2009/10/28 07:31:59 | 000,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2009/10/28 07:12:53 | 000,000,594 | ---- | M] () -- C:\WINDOWS\win.ini
[2009/10/28 07:12:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2009/10/28 07:06:25 | 001,090,664 | -H-- | M] () -- C:\Documents and Settings\Dejv\Local Settings\Application Data\IconCache.db
[2009/10/28 07:01:04 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\HijackThis.lnk
[2009/10/28 07:00:35 | 000,812,344 | ---- | M] (Trend Micro Inc.) -- C:\Documents and Settings\Dejv\Desktop\HijackThisInstaller.exe
[2009/10/28 06:55:25 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009/10/28 01:23:23 | 000,272,108 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\reiche10static.pdf
[2009/10/27 15:54:03 | 000,194,036 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\Kalkulace Elektrarna.xlsx
[2009/10/27 08:32:19 | 000,167,495 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\Fortify - PrtSc.JPG
[2009/10/27 06:56:36 | 000,033,426 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\rozhodnuti o odvolani.pdf
[2009/10/27 06:53:11 | 000,031,376 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\urok z prodleni.pdf
[2009/10/27 04:33:22 | 011,113,707 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\Kabat - Burlaci.mp3
[2009/10/27 01:53:03 | 000,005,217 | ---- | M] () -- C:\WINDOWS\WTRAN32.INI
[2009/10/27 01:53:03 | 000,000,000 | ---- | M] () -- C:\WINDOWS\XXLGSC
[2009/10/26 21:52:14 | 000,000,777 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\F1Upgrade.lnk
[2009/10/26 21:52:13 | 000,000,680 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\NSS.lnk
[2009/10/26 07:46:22 | 000,002,665 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\FileZilla Server Interface.lnk
[2009/10/26 00:13:04 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_WpdMtpDr_01_00_00.Wdf
[2009/10/25 18:48:20 | 000,050,688 | ---- | M] () -- C:\Documents and Settings\Dejv\My Documents\viry.doc
[2009/10/25 12:30:46 | 000,111,444 | ---- | M] () -- C:\Documents and Settings\Dejv\Desktop\PrintScreenC++Test.JPG
[2009/10/25 07:18:21 | 000,639,860 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/10/25 07:18:21 | 000,524,834 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009/10/25 07:18:21 | 000,103,412 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009/10/25 06:42:13 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2009/10/24 14:10:01 | 000,000,876 | ---- | M] () -- C:\WINDOWS\ODBC.INI
[2009/10/24 13:34:14 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
[2009/10/24 13:34:13 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
[2009/10/24 01:43:18 | 000,000,118 | ---- | M] () -- C:\WINDOWS\System32\MRT.INI
[2009/10/23 20:46:19 | 000,000,535 | ---- | M] () -- C:\WINDOWS\cdplayer.ini
[2009/10/23 20:43:29 | 000,000,040 | ---- | M] () -- C:\WINDOWS\nero.INI
[2009/10/23 20:15:29 | 000,000,960 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\ss.ini
[2009/10/23 10:44:32 | 000,072,711 | ---- | M] () -- C:\jana.pdf
[2009/10/23 10:34:20 | 000,015,602 | ---- | M] () -- C:\Documents and Settings\Dejv\My Documents\Document1.mdi
[2009/10/23 06:55:50 | 000,006,621 | ---- | M] () -- C:\Documents and Settings\Dejv\Application Data\PrimoPDFSet.xml
[2009/10/23 06:55:49 | 000,157,010 | ---- | M] () -- C:\StdAfx-PC-Lint-Output.pdf
[2009/10/23 06:35:25 | 000,000,754 | ---- | M] () -- C:\WINDOWS\WORDPAD.INI
[2009/10/23 04:08:50 | 000,056,104 | ---- | M] () -- C:\Documents and Settings\Dejv\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/10/23 02:09:48 | 000,157,642 | ---- | M] () -- C:\PC-lint-Second Project.pdf
[2009/10/23 02:08:48 | 000,240,736 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/10/23 01:30:07 | 001,182,385 | ---- | M] () -- C:\PC-Lint-Output.pdf
[2009/10/22 18:42:56 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_PCCSWpdDriver_01_05_00.Wdf
[2009/10/22 18:02:03 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
[2009/10/22 18:00:37 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
[2009/10/22 18:00:31 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
[2009/10/21 06:38:36 | 000,075,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\strmfilt.dll
[2009/10/21 06:38:36 | 000,075,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\strmfilt.dll
[2009/10/21 06:38:36 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\httpapi.dll
[2009/10/21 06:38:36 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpapi.dll
[2009/10/21 04:05:26 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_05_00.Wdf
[2009/10/21 03:04:12 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2009/10/21 03:02:28 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
[2009/10/20 17:20:16 | 000,265,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\http.sys
[2009/10/15 17:28:26 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\t2embed.dll
[2009/10/15 17:28:26 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\t2embed.dll
[2009/10/15 17:28:26 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fontsub.dll
[2009/10/15 17:28:26 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fontsub.dll

========== Files Created - No Company Name ==========

[2009/11/08 23:29:38 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2009/11/08 23:29:38 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2009/11/08 23:29:36 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2009/10/30 21:25:34 | 001,952,324 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\Nokia_5530_XpressMusic_UG_cs.pdf
[2009/10/29 03:14:23 | 000,210,432 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\T-Cleaner.exe
[2009/10/28 08:21:34 | 000,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/10/28 07:32:05 | 000,001,700 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk
[2009/10/28 07:08:38 | 1063,768,064 | -HS- | C] () -- C:\hiberfil.sys
[2009/10/28 07:01:02 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\HijackThis.lnk
[2009/10/28 06:55:25 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009/10/28 02:10:52 | 008,126,464 | ---- | C] () -- C:\Documents and Settings\Dejv\ntuser.dat
[2009/10/28 01:23:22 | 000,272,108 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\reiche10static.pdf
[2009/10/27 08:32:19 | 000,167,495 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\Fortify - PrtSc.JPG
[2009/10/27 06:56:36 | 000,033,426 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\rozhodnuti o odvolani.pdf
[2009/10/27 06:53:11 | 000,031,376 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\urok z prodleni.pdf
[2009/10/27 04:32:49 | 011,113,707 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\Kabat - Burlaci.mp3
[2009/10/26 21:52:14 | 000,000,777 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\F1Upgrade.lnk
[2009/10/26 21:52:13 | 000,000,680 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\NSS.lnk
[2009/10/26 07:46:22 | 000,002,665 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\FileZilla Server Interface.lnk
[2009/10/26 03:09:46 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2009/10/26 03:09:41 | 000,260,272 | ---- | C] () -- C:\cmldr
[2009/10/26 00:13:04 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_WpdMtpDr_01_00_00.Wdf
[2009/10/25 18:48:18 | 000,050,688 | ---- | C] () -- C:\Documents and Settings\Dejv\My Documents\viry.doc
[2009/10/25 12:30:46 | 000,111,444 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\PrintScreenC++Test.JPG
[2009/10/25 10:32:08 | 000,000,522 | ---- | C] () -- C:\WINDOWS\System32\Microsoft.VC80.CRT.manifest
[2009/10/24 13:34:14 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
[2009/10/24 13:34:13 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
[2009/10/24 01:43:18 | 000,000,118 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2009/10/23 20:16:28 | 000,000,535 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2009/10/23 20:15:29 | 000,000,960 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\ss.ini
[2009/10/23 10:44:32 | 000,072,711 | ---- | C] () -- C:\jana.pdf
[2009/10/23 10:34:07 | 000,015,602 | ---- | C] () -- C:\Documents and Settings\Dejv\My Documents\Document1.mdi
[2009/10/23 08:19:56 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2009/10/23 06:55:48 | 000,157,010 | ---- | C] () -- C:\StdAfx-PC-Lint-Output.pdf
[2009/10/23 03:14:36 | 000,194,036 | ---- | C] () -- C:\Documents and Settings\Dejv\Desktop\Kalkulace Elektrarna.xlsx
[2009/10/23 02:09:46 | 000,157,642 | ---- | C] () -- C:\PC-lint-Second Project.pdf
[2009/10/23 02:02:04 | 000,112,928 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2009/10/23 01:29:51 | 001,182,385 | ---- | C] () -- C:\PC-Lint-Output.pdf
[2009/10/22 18:42:56 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_PCCSWpdDriver_01_05_00.Wdf
[2009/10/22 18:02:03 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
[2009/10/22 18:00:37 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
[2009/10/22 18:00:31 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
[2009/10/21 04:05:26 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_05_00.Wdf
[2009/10/21 03:02:28 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
[2009/10/01 19:35:37 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\SYSVCPDRV.SYS
[2009/09/15 19:19:24 | 000,000,066 | ---- | C] () -- C:\WINDOWS\WTRDCTM.INI
[2009/09/15 19:16:32 | 000,000,259 | ---- | C] () -- C:\WINDOWS\MAILTRAN.INI
[2009/09/15 19:16:31 | 000,001,268 | ---- | C] () -- C:\WINDOWS\TRNCOM.INI
[2009/09/15 19:16:21 | 000,005,217 | ---- | C] () -- C:\WINDOWS\WTRAN32.INI
[2009/09/15 19:16:21 | 000,004,177 | ---- | C] () -- C:\WINDOWS\WDICT32.INI
[2009/09/04 23:01:05 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\Tarball.dll
[2009/09/04 18:05:38 | 000,000,086 | ---- | C] () -- C:\WINDOWS\MinGW.INI
[2009/09/04 17:46:31 | 000,000,044 | ---- | C] () -- C:\WINDOWS\MSYS.INI
[2009/09/01 23:13:25 | 000,006,621 | ---- | C] () -- C:\Documents and Settings\Dejv\Application Data\PrimoPDFSet.xml
[2009/09/01 23:13:22 | 000,000,328 | ---- | C] () -- C:\Documents and Settings\LocalService\Application Data\PrimoPDFSet.xml
[2009/09/01 23:10:18 | 000,176,235 | ---- | C] () -- C:\WINDOWS\System32\Primomonnt.dll
[2009/07/21 16:12:58 | 000,000,040 | ---- | C] () -- C:\WINDOWS\nero.INI
[2009/05/17 12:04:55 | 000,187,392 | ---- | C] () -- C:\Documents and Settings\Dejv\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/05/16 21:16:02 | 000,000,128 | ---- | C] () -- C:\Documents and Settings\Dejv\Local Settings\Application Data\fusioncache.dat
[2009/05/16 20:56:01 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2009/05/16 20:56:01 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2009/05/16 20:56:01 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2009/05/16 20:56:01 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2009/05/16 20:56:01 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2009/05/16 20:56:01 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2009/05/16 20:46:04 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\Cpuinf32.dll
[2009/05/16 20:44:37 | 000,000,166 | ---- | C] () -- C:\WINDOWS\QUICKEN.INI
[2009/05/16 20:42:39 | 000,000,876 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009/05/16 20:37:18 | 000,002,154 | ---- | C] () -- C:\WINDOWS\System32\tmmute.ini
[2009/04/27 05:13:36 | 000,000,314 | ---- | C] () -- C:\WINDOWS\primopdf.ini
[2007/05/09 20:35:54 | 000,057,126 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini
[2006/11/29 21:24:10 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\btprn2k.dll
[2006/03/03 00:16:30 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2006/03/02 10:42:10 | 000,000,056 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2006/03/02 10:21:02 | 000,000,000 | ---- | C] () -- C:\WINDOWS\VAIOUpdt.INI
[2006/03/02 09:30:06 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\WLANDLL.DLL
[2006/03/02 08:46:11 | 000,000,800 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2006/03/02 07:22:13 | 000,000,758 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2005/11/02 02:53:38 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2005/02/17 10:41:32 | 000,000,603 | ---- | C] () -- C:\WINDOWS\System32\BTNeighborhood.dll.manifest
[2005/02/17 10:41:30 | 000,000,593 | ---- | C] () -- C:\WINDOWS\System32\btcss.dll.manifest
[2003/01/07 23:05:08 | 000,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
[2002/06/12 20:21:12 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\winchip.dll
[2001/11/14 11:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll

========== LOP Check ==========

[2009/10/28 07:29:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2009/10/27 01:25:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9
[2009/10/23 20:15:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FreeRIP
[2009/10/25 06:12:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Installations
[2009/10/22 18:28:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nokia
[2009/10/21 03:27:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NokiaMusic
[2009/10/22 18:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2009/09/05 11:49:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PreEmptive Solutions
[2009/10/23 04:50:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Readon
[2009/10/29 01:24:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2009/09/08 20:54:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WinZip
[2009/10/23 12:31:39 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{4748A871-C4A6-4850-9FB2-30F269897E32}
[2009/10/26 21:05:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\FileZilla
[2009/09/04 23:00:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\GetRightToGo
[2009/10/27 15:28:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\ICQ
[2009/09/17 00:01:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\InterVideo
[2009/10/25 23:22:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\JLC's Software
[2009/10/22 18:06:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Leadertech
[2009/05/16 21:23:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Netscape
[2009/10/25 07:20:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Nokia
[2009/10/22 18:41:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Nseries
[2009/10/23 02:41:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\PC Suite
[2009/09/27 23:20:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\PVS-Studio
[2009/10/23 04:14:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Shareaza
[2009/10/01 11:02:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\Template
[2009/09/04 23:01:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dejv\Application Data\WinTar
[2010/03/08 20:30:06 | 000,000,420 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{5AB07CB9-DE86-4B09-84D5-1AD69752FB73}.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 214 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:97B5302F
@Alternate Data Stream - 16 bytes -> C:\Documents and Settings\Dejv\My Documents\Shareaza Downloads:Shareaza.GUID
< End of report >

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod Damned » 09 bře 2010 02:00

Nemusíš.

Hlavně se neřiď tím výkřikem do tmy od celinka. (smazáno. memphisto)

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Custom Scans/Fixes do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
FF - prefs.js..browser.startup.homepage: "www.gmx.net"
[2009/08/20 14:03:08 | 000,001,394 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml
[2009/08/20 14:03:08 | 000,002,193 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\answers.xml
[2009/08/20 14:03:08 | 000,001,534 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml
[2009/08/20 14:03:08 | 000,002,344 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml
O33 - MountPoints2\{a6cfb736-43b3-11de-b86a-00166f7194bc}\Shell\AutoRun\command - "" = C:\WINDOWS\System32\setup.exe --
@Alternate Data Stream - 214 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:97B5302F
@Alternate Data Stream - 16 bytes -> C:\Documents and Settings\Dejv\My Documents\Shareaza Downloads:Shareaza.GUID

:Files
C:\Windows\*.tmp
C:\Windows\System32\*.tmp
C:\Recycler
C:\$RECYCLE.BIN
C:\Program Files\NSS
C:\WINDOWS\System32\setup.exe
C:\Documents and Settings\All Users\Application Data\avg9
C:\WINDOWS\System32\muveeInstall
C:\WINDOWS\System32\d3d9caps.dat
C:\Documents and Settings\Dejv\Desktop\NSS.lnk
C:\WINDOWS\System32\tmmute.ini

C:\Windows\tasks\SA.DAT

:Reg

:Commands
[purity]
[emptytemp]
[emptyflash]
[start explorer]
[Reboot]



Poté klikni nahoře na Run Fix. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
*****************************************************************************************************************************************
Červený soubor zkontroluj na Virustotalu a vlož sem odkaz na výsledek.
Pokud ho nenajdeš, dej si zobrazit skryté a systémové soubory. Pokud ti nabídne, že soubor už kontroloval,
nech ho zkontrolovat znovu, a počkej až se objeví "Dokončeno" a výsledek.Potom sem zkopíruj adresní řádek.


WINDOWS\System32\SYSVCPDRV.SYS
C:\WINDOWS\System32\Tarball.dll
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

daviddda
Level 1
Level 1
Příspěvky: 72
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod daviddda » 09 bře 2010 11:49

Dekuji za dalsi pomoc. Dole na liste se mi zobrazuje pri restartu security varovani: "Norton Internet Worm Protection is turned off." pritom jsem zadny Norton Internet Worm Protection snad nikdy neinstaloval.


Posilam vysledek z Virustotalu:

http://www.virustotal.com/analisis/bf3b ... 1268131247

http://www.virustotal.com/analisis/493b ... 1268131462


Vypis z OTL:


All processes killed
========== OTL ==========
No active process named explorer.exe was found!
Prefs.js: "www.gmx.net" removed from browser.startup.homepage
C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml moved successfully.
C:\Program Files\Mozilla Firefox\searchplugins\answers.xml moved successfully.
C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml moved successfully.
C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml moved successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a6cfb736-43b3-11de-b86a-00166f7194bc}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a6cfb736-43b3-11de-b86a-00166f7194bc}\ not found.
C:\WINDOWS\System32\setup.exe moved successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:97B5302F deleted successfully.
Unable to delete ADS C:\Documents and Settings\Dejv\My Documents\Shareaza Downloads:Shareaza.GUID .
========== FILES ==========
File\Folder C:\Windows\*.tmp not found.
File\Folder C:\Windows\System32\*.tmp not found.
C:\RECYCLER\S-1-5-21-4054404310-57410991-3968148011-1006 folder moved successfully.
C:\RECYCLER folder moved successfully.
File\Folder C:\$RECYCLE.BIN not found.
C:\Program Files\NSS\Help\img folder moved successfully.
C:\Program Files\NSS\Help folder moved successfully.
C:\Program Files\NSS\Framework folder moved successfully.
C:\Program Files\NSS\fls1sup folder moved successfully.
C:\Program Files\NSS\FlashUsb folder moved successfully.
C:\Program Files\NSS\Flash folder moved successfully.
C:\Program Files\NSS\Drivers\USB folder moved successfully.
C:\Program Files\NSS\Drivers\LPT folder moved successfully.
C:\Program Files\NSS\Drivers folder moved successfully.
C:\Program Files\NSS\Doc folder moved successfully.
C:\Program Files\NSS\Dct4Plus folder moved successfully.
C:\Program Files\NSS\Backup\temp folder moved successfully.
C:\Program Files\NSS\Backup\rpl folder moved successfully.
C:\Program Files\NSS\Backup\pm folder moved successfully.
C:\Program Files\NSS\Backup\locks folder moved successfully.
C:\Program Files\NSS\Backup\ask folder moved successfully.
C:\Program Files\NSS\Backup folder moved successfully.
C:\Program Files\NSS folder moved successfully.
File\Folder C:\WINDOWS\System32\setup.exe not found.
C:\Documents and Settings\All Users\Application Data\avg9\Log folder moved successfully.
C:\Documents and Settings\All Users\Application Data\avg9 folder moved successfully.
C:\WINDOWS\System32\muveeInstall folder moved successfully.
C:\WINDOWS\System32\d3d9caps.dat moved successfully.
C:\Documents and Settings\Dejv\Desktop\NSS.lnk moved successfully.
C:\WINDOWS\System32\tmmute.ini moved successfully.
C:\Windows\tasks\SA.DAT moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Dejv
->Temp folder emptied: 1039233 bytes
->Temporary Internet Files folder emptied: 4770581 bytes
->Java cache emptied: 748466 bytes
->FireFox cache emptied: 90985216 bytes
->Flash cache emptied: 128728 bytes

User: LocalService
->Temp folder emptied: 65748 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 16384 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 93.00 mb


[EMPTYFLASH]

User: All Users

User: Default User

User: Dejv
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

Total Flash Files Cleaned = 0.00 mb


OTL by OldTimer - Version 3.1.35.0 log created on 10292009_010752

Files\Folders moved on Reboot...
File\Folder C:\WINDOWS\temp\_avast5_\Webshlock.txt not found!
File\Folder C:\WINDOWS\temp\Perflib_Perfdata_580.dat not found!

Registry entries deleted on Reboot...

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod Damned » 09 bře 2010 14:07

Smaž složku C:\_OTL

Stáhni si :Dr. Web CureIt nebo z http://www.majorgeeks.com/Dr.Web_CureIT_d4783.html dej update , po aktualizaci dej start.

Tlačítky dole můzeš soubor léčit, smazat, přesunout nebo přejmenovat.Pak napiš výsledek. Sken může trvat dlouho. Nalezenou infekci nejdříve léčit, potom teprve smazat. Pokud něco najde ve složce System Volume Information, tak smazat.

Dej mi vědět výsledek.

Za ten Norton se někdy schovávaj šmejdi. Odstraníme to.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

daviddda
Level 1
Level 1
Příspěvky: 72
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod daviddda » 09 bře 2010 15:12

je to mozne, ze za tim Nortonem bude schovany nejaky virus, tata varovna hlaska se mi zobrazuje az pote se mi na pocitac nainstaloval ten vadny program, jak jsem psal na zacatku (coz je asi 2 dny zpet). Pocitac je od te doby takovy divny, kdyz mam otevreny napr. Word, tak mi process WINWORD.EXE v procesech pod Task managerem napr. pri ukladani dokumentu, nebo otvirani nejakeho dokumentu zabira skoro cele CPU tak na 10 sekund, nebo kdyz delam neco ve Firefoxu, tak CPU taky kolikrat vyskakuje az na 100 procent, jako kdyby se v pozadi stahovaly nejake updaty, po minute je zase klid.. predtim to nedelalo. Tak ja jeste dodelam ten test z posledniho prispevku a pak sem dam ty vysledky. Zatim moc dekuju.

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod Damned » 09 bře 2010 15:20

Zkontroluj to, dej vědět a pak zhodnotíme další postup.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

daviddda
Level 1
Level 1
Příspěvky: 72
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod daviddda » 09 bře 2010 21:32

ten Dr. Web Scanner napsal Done - no viruses found. Pri instalaci nesel aktualizovat - po kliknuti na update se mi otevrela pouze domovska stranka scanneru v prohlizeci.

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod Damned » 09 bře 2010 21:40

Zkusíme tedy jiný, i když dnes vyšla nová verze, možná aktualizaci nechtěl.


Spusť F-Secure Online Scanner

Tento skener je možno použít jen v prohlížeči Internet Explorer! Postupuj podle instrukcí na stránce F-Secure pro správnou instalaci.
Akceptuj licenci.
Po instalaci ActiveX, klikni na Full System Scan. Když je stahování skončeno, automaticky začne sken .
Vyčkej konce skenu, po jeho dobu neprováděj jiné operace ani neklikej myší. Když skončí sken, klikni na tlačítko Automatic clearing (recommended).
Poté klikni na tlačítko Show Report, zkopíruj a vlož sem .
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

daviddda
Level 1
Level 1
Příspěvky: 72
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod daviddda » 11 bře 2010 08:27

ahoj, provedl jsem tedy ten test pomoci F-Secure online scanneru. Nejdrive jsem provedl ten quick test a pak full test, tak posilam vysledky obou. U toho quick testu to naslo 7 chyb a vsechny vylecilo a u toho full testu to naslo 7 chyb z nihz 5 nebylo vyleceno.


QUICKTEST:



Nalezený malware: 7
TrackingCookie.2o7 (spyware)
Systém (Vyléčeno)
TrackingCookie.Advertising (spyware)
Systém (Vyléčeno)
TrackingCookie.Atdmt (spyware)
Systém (Vyléčeno)
TrackingCookie.Webtrends (spyware)
Systém (Vyléčeno)
TrackingCookie.Tradedoubler (spyware)
Systém (Vyléčeno)
TrackingCookie.Atwola (spyware)
Systém (Vyléčeno)
TrackingCookie.Yieldmanager (spyware)
Systém (Vyléčeno)

--------------------------------------------------------------------------------

Statistika
Kontrolováno:
Soubory: 4350
Systém: 4350
Nekontrolováno: 0
Akce:
Vyléčeno: 7
Přejmenováno: 0
Odstraněno: 0
Nevyčištěno: 0
Odesláno: 0

--------------------------------------------------------------------------------

Možnosti
Moduly kontroly:


===================================================================================================


FULLTEST:


Hlášení kontroly
Čtvrtek, Říjen 29, 2009 01:05:50 - 09:26:06
Název počítače: DAVID
Typ kontroly: Kontrolovat systém na přítomnost malwaru, spywaru a programů rootkit
Cíl: C:\


--------------------------------------------------------------------------------

Nalezený malware: 7
TrackingCookie.Atwola (spyware)
Systém (Vyléčeno)
TrackingCookie.Yieldmanager (spyware)
Systém (Vyléčeno)
Suspicious:W32/Malware!Gemini (virus)
C:\SKOLA\DIPLOMKA\POUZIVANE TESTOVACI PROGRAMY V C++\STAHLE PROGRAMY NA DRUHE TESTOVANI\HALITE\OPENSSL-LIBPROHALITEMUSIMVLOZITDOHALITELIBOPENSSL\OPENSSL\OPENSSL-0.9.8K\BIN\X86\MTD\SHA1TEST.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
C:\SKOLA\DIPLOMKA\POUZIVANE TESTOVACI PROGRAMY V C++\STAHLE PROGRAMY NA DRUHE TESTOVANI\HALITE\HALITE.0_3_2.SRC\LIB\OPENSSL\BIN\X86\MTD\SHA1TEST.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
C:\SKOLA\DIPLOMKA\POUZIVANE TESTOVACI PROGRAMY V C++\STAHLE PROGRAMY NA DRUHE TESTOVANI\HALITE\HALITE.0_3_0\HALITE0_3_0\LIB\OPENSSL\BIN\X86\MTD\SHA1TEST.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
C:\SKOLA\DIPLOMKA\POUZIVANE TESTOVACI PROGRAMY V C++\STAHLE PROGRAMY NA DRUHE TESTOVANI\HALITE\HALITE.0_3_0\COPY OF HALITE0_3_0\LIB\OPENSSL\BIN\X86\MTD\SHA1TEST.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
C:\RECYCLER\S-1-5-21-4054404310-57410991-3968148011-1006\DC1\MOVEDFILES\10292009_010752\C_PROGRAM FILES\NSS\F1UPGRADEUTILITY.EXE (Nevyčištěno & Odesláno)

--------------------------------------------------------------------------------

Statistika
Kontrolováno:
Soubory: 96725
Systém: 4347
Nekontrolováno: 8
Akce:
Vyléčeno: 2
Přejmenováno: 0
Odstraněno: 0
Nevyčištěno: 5
Odesláno: 5
Nekontrolované soubory:
C:\PAGEFILE.SYS
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE
C:\WINDOWS\SYSTEM32\CONFIG\SAM
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM
C:\DOCUMENTS AND SETTINGS\DEJV\LOCAL SETTINGS\TEMP\HSPERFDATA_DEJV\5612
C:\DOCUMENTS AND SETTINGS\DEJV\LOCAL SETTINGS\TEMP\HSPERFDATA_DEJV\5984

--------------------------------------------------------------------------------

Možnosti
Moduly kontroly:
Možnosti kontroly:
Kontrolovat určené soubory: COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB LNK WSF {* PDF ZL? XML XXX ANI AVB BAT CMD JOB LSP MAP MHT MIF PHP POT SWF WMF NWS TAR
Používat pokročilou heuristiku

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod Damned » 11 bře 2010 08:41

Rychlý test 7x cookie - nic hrozný.
Plný test 2x coockie, 1x soubor z Koše (když si smazal složku OTL, měl si i vysypat Koš) a 4x soubor "SHA1TEST.EXE". to je nějaký vlastní? Označil ho za Malware, ale není součást Security Tool.

Mě spíše zajímaj tyto složky:

C:\DOCUMENTS AND SETTINGS\DEJV\LOCAL SETTINGS\TEMP\HSPERFDATA_DEJV\5612
C:\DOCUMENTS AND SETTINGS\DEJV\LOCAL SETTINGS\TEMP\HSPERFDATA_DEJV\5984

Můžou to být složky vytvořené modem, nebo prohlížečem. Můžeš se mrknout co obsahují?
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

daviddda
Level 1
Level 1
Příspěvky: 72
Registrován: leden 10
Pohlaví: Muž
Stav:
Offline

Re: Jak se zbavit programu "Security Tool"?

Příspěvekod daviddda » 11 bře 2010 09:21

ten soubor "SHA1TEST.EXE" je soucasti knihovny OPENSSL je to knihovna pro C++ prog. jazyk a ten soubor uz tam nejspise byl, kdyz jsem si tu knihovnu stahnul, ale nevim k cemu je, v te slozce je dalsich asi 30 .EXE souboru. Myslim, ze kdyz ho smazeme, ze se nic nestane.

Slozky:
C:\DOCUMENTS AND SETTINGS\DEJV\LOCAL SETTINGS\TEMP\HSPERFDATA_DEJV\5612
C:\DOCUMENTS AND SETTINGS\DEJV\LOCAL SETTINGS\TEMP\HSPERFDATA_DEJV\5984
nejdou otevrit, otevru pouze "C:\Documents and Settings\Dejv\Local Settings\temp\hsperfdata_Dejv\" a pod touto posledni slozkou uz nic neni, ani kdyz dam zobrazit skryte soubory a kdyz do adresy vlozim cely nazev: "C:\DOCUMENTS AND SETTINGS\DEJV\LOCAL SETTINGS\TEMP\HSPERFDATA_DEJV\5612" tak mi to napise "Cannot find file.."

jinak mi prijde, ze pocitac stale zlobi, sice kdyz na nem nepracuji, tak bezi CPU pod Task Managerem dole na 0 az 3 procentech, ale kdyz otevru nejakou slozku, nebo ukladam Word dokument, tak to vzdycky vyskoci uplne nahoru tak na 10 sekund, nebo kdyz jsem rozbaloval soubor ZIP s 500 MB avi souborem, tak to delal asi 15 minut a CPU bylo porad tak nejak naplno, to driv nedelalo. Asi tam jeste neco bude z tech viru.


Zpět na “Viry, antiviry, firewally…”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 4 hosti