ComboFix:
ComboFix 10-03-16.05 - Administrator 17.03.2010 22:29:01.10.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.2047.1554 [GMT 1:00]
Spuštěný z: c:\documents and settings\Administrator\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Administrator\Plocha\CFScript.txt
FILE ::
"c:\windows\system32\ezsidmv.dat"
"c:\windows\system32\KB905474\wgasetup.exe"
"c:\windows\Tasks\WGASetup.job"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\ezsidmv.dat
c:\windows\system32\KB905474\wgasetup.exe
c:\windows\Tasks\WGASetup.job
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-02-17 do 2010-03-17 )))))))))))))))))))))))))))))))
.
2010-03-13 08:23 . 2010-03-13 08:23 -------- d-----w- c:\program files\VideoLAN
2010-03-12 16:26 . 2010-03-12 16:25 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-03-06 15:24 . 2010-03-06 15:45 -------- d-----w- c:\program files\Silent Hill Homecoming
2010-03-04 00:06 . 2010-03-17 21:32 -------- d-----w- c:\windows\system32\KB905474
2010-03-04 00:06 . 2009-03-10 21:26 1435008 ----a-w- c:\windows\system32\KB905474\wganotifypackageinner.exe
2010-02-28 14:20 . 2010-02-28 14:20 -------- d-----w- c:\program files\CAPCOM
2010-02-28 14:18 . 2010-02-28 14:18 -------- d-----w- c:\program files\MSBuild
2010-02-28 14:15 . 2010-02-28 14:19 -------- d-----w- c:\windows\system32\XPSViewer
2010-02-28 14:14 . 2010-02-28 14:14 -------- d-----w- c:\program files\Reference Assemblies
2010-02-28 14:14 . 2006-10-14 15:43 27648 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll
2010-02-28 14:14 . 2006-06-29 12:07 14048 ------w- c:\windows\system32\spmsg2.dll
2010-02-28 14:13 . 2010-02-28 14:13 -------- d-----w- c:\windows\system32\xlive
2010-02-28 14:13 . 2010-03-17 12:53 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2010-02-27 18:43 . 2010-02-27 18:43 -------- d-----w- c:\program files\Trend Micro
2010-02-25 16:16 . 2010-02-25 16:16 -------- d-----w- c:\program files\Microsoft Works
2010-02-25 16:15 . 2010-02-25 16:15 -------- d-----w- c:\program files\Microsoft.NET
2010-02-25 16:13 . 2010-02-25 16:15 -------- d-----w- c:\windows\SHELLNEW
2010-02-25 16:13 . 2010-02-25 16:13 -------- d-----r- C:\MSOCache
2010-02-24 17:03 . 2010-03-17 12:52 -------- d-----w- c:\program files\DivX
2010-02-24 17:03 . 2010-02-24 17:03 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-02-24 12:45 . 2008-04-13 23:15 26368 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2010-02-24 12:34 . 2010-02-24 12:34 -------- d-----w- c:\program files\Windows Media Connect 2
2010-02-24 12:33 . 2010-02-24 12:33 -------- d-----w- c:\windows\system32\drivers\UMDF
2010-02-23 22:40 . 2010-02-23 22:40 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-02-23 22:37 . 2005-05-26 14:34 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll
2010-02-23 22:37 . 2010-02-23 22:37 -------- d-----w- c:\windows\Logs
2010-02-23 22:36 . 2010-02-23 22:36 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-02-23 22:36 . 2010-02-23 22:36 107832 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-02-23 22:36 . 2010-02-24 12:33 -------- d-----w- c:\windows\system32\LogFiles
2010-02-23 22:36 . 2010-02-23 22:36 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-02-23 22:36 . 2010-02-23 22:36 2250024 ----a-w- c:\windows\system32\pbsvc.exe
2010-02-23 22:33 . 2010-02-23 22:33 -------- d-----w- c:\program files\Ubisoft
2010-02-23 22:29 . 2010-02-23 22:29 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-02-21 18:08 . 2005-06-23 10:11 23552 ----a-r- c:\windows\system32\PostProc.dll
2010-02-21 18:08 . 2001-09-20 13:47 765952 ----a-r- c:\windows\system\crlds3d.dll
2010-02-21 18:08 . 2005-10-11 16:07 393088 ----a-r- c:\windows\system32\drivers\senfilt.sys
2010-02-21 18:08 . 2005-03-05 20:53 127872 ----a-r- c:\windows\system32\drivers\aeaudio.sys
2010-02-21 18:08 . 2005-10-06 17:21 141312 ----a-r- c:\windows\system32\drivers\ADIHdAud.sys
2010-02-21 18:08 . 2005-05-04 08:20 53248 ------w- c:\windows\system32\wdmioctl.dll
2010-02-21 18:08 . 2001-09-11 14:20 1285632 ------w- c:\windows\system32\SMMedia.dll
2010-02-21 18:08 . 2010-02-21 18:08 -------- d-----w- c:\program files\Analog Devices
2010-02-21 18:08 . 2005-09-26 15:20 49152 ------w- c:\windows\system32\DSndUp.exe
2010-02-21 18:08 . 2002-04-17 14:05 45056 ------w- c:\windows\system32\CleanUp.exe
2010-02-21 13:29 . 2010-02-21 13:29 -------- d-sh--w- c:\documents and settings\Administrator\IECompatCache
2010-02-21 13:28 . 2010-02-21 13:28 -------- d-sh--w- c:\documents and settings\Administrator\PrivacIE
2010-02-21 13:19 . 2010-02-21 13:19 -------- d-sh--w- c:\documents and settings\Administrator\IETldCache
2010-02-21 13:16 . 2010-03-04 00:06 -------- d-----w- c:\windows\ie8updates
2010-02-21 13:15 . 2010-02-21 13:16 -------- dc-h--w- c:\windows\ie8
2010-02-21 13:13 . 2009-12-11 08:38 69120 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-02-21 13:13 . 2009-12-21 19:08 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-02-21 13:13 . 2009-12-21 19:08 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-02-21 13:13 . 2009-12-21 19:08 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-02-21 13:13 . 2009-12-21 19:08 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-02-21 13:13 . 2009-12-21 19:08 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-02-21 13:13 . 2009-12-21 19:08 11070464 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-02-21 02:21 . 2010-02-21 02:21 -------- d-----w- c:\program files\Alwil Software
2010-02-21 01:08 . 2010-02-21 01:10 -------- d-----w- C:\Fraps
2010-02-21 00:41 . 2008-04-14 07:51 33792 -c----w- c:\windows\system32\dllcache\custsat.dll
2010-02-21 00:40 . 2008-04-13 23:10 10240 ------w- c:\windows\system32\drivers\sffp_mmc.sys
2010-02-21 00:31 . 2008-06-14 17:35 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-02-21 00:31 . 2009-12-31 16:50 353792 -c----w- c:\windows\system32\dllcache\srv.sys
2010-02-21 00:31 . 2009-11-21 16:03 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-02-21 00:30 . 2009-10-15 16:32 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2010-02-21 00:30 . 2009-10-15 16:32 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2010-02-21 00:30 . 2009-06-21 21:48 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2010-02-21 00:30 . 2009-12-04 18:22 455424 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-02-21 00:30 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2010-02-21 00:28 . 2009-02-06 10:10 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2010-02-21 00:28 . 2009-03-06 14:23 284160 -c----w- c:\windows\system32\dllcache\pdh.dll
2010-02-21 00:28 . 2009-02-09 11:25 111104 -c----w- c:\windows\system32\dllcache\services.exe
2010-02-21 00:28 . 2009-02-09 10:56 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2010-02-21 00:28 . 2009-02-09 10:56 709632 -c----w- c:\windows\system32\dllcache\ntdll.dll
2010-02-21 00:28 . 2009-02-09 10:56 684032 -c----w- c:\windows\system32\dllcache\advapi32.dll
2010-02-21 00:28 . 2009-02-09 10:56 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2010-02-21 00:28 . 2009-02-09 10:56 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2010-02-21 00:28 . 2008-05-01 14:37 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2010-02-21 00:28 . 2009-07-10 13:28 1315328 -c----w- c:\windows\system32\dllcache\msoe.dll
2010-02-21 00:28 . 2008-04-11 19:06 691712 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2010-02-21 00:27 . 2009-08-04 17:29 2068224 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe
2010-02-21 00:27 . 2009-08-04 17:29 2147328 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2010-02-21 00:27 . 2009-08-04 17:29 2025984 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2010-02-21 00:26 . 2008-10-15 16:38 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-02-21 00:26 . 2009-07-31 04:35 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2010-02-21 00:26 . 2008-04-21 21:15 216576 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-02-21 00:24 . 2010-03-04 00:07 -------- d--h--w- c:\windows\$hf_mig$
2010-02-20 15:56 . 2010-02-20 15:56 -------- d-----w- c:\program files\Zaparit
2010-02-19 22:00 . 2010-02-19 22:00 -------- d-----w- c:\program files\Games
2010-02-19 20:15 . 2010-02-19 20:15 86016 ----a-w- c:\windows\system32\OpenAL32.dll
2010-02-19 20:15 . 2010-02-19 20:15 262144 ----a-w- c:\windows\system32\wrap_oal.dll
2010-02-19 20:14 . 2010-02-19 20:14 -------- d-----w- c:\windows\system32\Futuremark
2010-02-19 20:14 . 2004-10-25 19:02 21664 ----a-w- c:\windows\system32\drivers\Entech.sys
2010-02-19 20:14 . 2004-06-22 14:44 5632 ----a-w- c:\windows\system32\drivers\Entech64.sys
2010-02-19 20:14 . 2001-11-19 18:05 3972 ----a-w- c:\windows\system32\drivers\PciBus.sys
2010-02-19 20:13 . 2010-02-19 20:13 -------- d-----w- c:\program files\Futuremark
2010-02-19 17:51 . 2010-02-19 17:51 -------- d-----w- c:\program files\Lavalys
2010-02-19 16:51 . 2004-08-14 02:56 5810 ----a-r- c:\windows\system32\drivers\ASACPI.sys
2010-02-19 16:42 . 2010-02-03 04:07 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2010-02-19 16:42 . 2010-02-03 03:40 446464 ----a-w- c:\windows\system32\ATIDEMGX.dll
2010-02-19 16:42 . 2010-02-03 03:34 887724 ----a-w- c:\windows\system32\ativva6x.dat
2010-02-19 16:42 . 2010-02-03 03:34 3 ----a-w- c:\windows\system32\ativva5x.dat
2010-02-19 16:42 . 2009-12-04 21:17 198341 ----a-w- c:\windows\system32\atiicdxx.dat
2010-02-19 16:42 . 2010-02-19 16:44 -------- d-----w- c:\program files\ATI
2010-02-16 19:02 . 2010-03-17 12:51 -------- d-----w- c:\program files\Webteh
2010-02-16 19:01 . 2010-02-16 19:00 737280 ----a-w- c:\windows\iun6002.exe
2010-02-16 19:01 . 2010-02-16 19:01 -------- d-----w- c:\program files\Codec Pack - All In 1
2010-02-16 17:21 . 2010-02-16 17:21 -------- d-----w- c:\program files\CCleaner
2010-02-16 14:56 . 2010-02-16 15:04 -------- d-----w- c:\program files\ICQ6.5
2010-02-16 10:24 . 2010-02-16 10:24 -------- d-----w- c:\documents and settings\Administrator\DoctorWeb
2010-02-16 09:12 . 2010-03-12 16:26 -------- d-----w- c:\windows\system32\wbem\AutoRecover
2010-02-15 23:50 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-02-15 23:49 . 2010-03-17 15:51 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-02-15 23:49 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-12 16:26 . 2010-02-15 09:03 -------- d-----w- c:\program files\World of Warcraft
2010-03-04 14:30 . 2001-10-25 14:00 77706 ----a-w- c:\windows\system32\perfc005.dat
2010-03-04 14:30 . 2001-10-25 14:00 427336 ----a-w- c:\windows\system32\perfh005.dat
2010-02-23 22:33 . 2002-09-06 14:51 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-21 00:45 . 2002-09-06 14:36 86327 ----a-w- c:\windows\PCHealth\HelpCtr\OfflineCache\index.dat
2010-02-21 00:45 . 2002-09-06 14:36 3038 ----a-w- c:\windows\PCHealth\HelpCtr\PackageStore\SkuStore.bin
2010-02-19 16:42 . 2002-09-06 15:12 -------- d-----w- c:\program files\ATI Technologies
2010-02-15 21:32 . 2010-02-15 21:32 -------- d-----w- c:\program files\DIFX
2010-02-15 21:32 . 2010-02-15 21:32 -------- d-----w- c:\program files\USB TV
2010-02-15 09:33 . 2010-02-15 09:03 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2010-02-15 08:56 . 2010-02-15 08:56 -------- d-----w- c:\program files\Ventrilo
2010-02-15 08:56 . 2010-02-15 08:56 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-02-15 08:28 . 2002-09-06 14:36 8972 ----a-w- c:\windows\PCHealth\HelpCtr\Config\Cntstore.bin
2010-02-11 10:42 . 2010-02-11 10:42 86016 ----a-w- c:\windows\system32\frapsvid.dll
2010-02-03 04:52 . 2008-03-12 22:09 4605952 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2010-02-03 04:12 . 2010-02-19 16:24 45056 ----a-w- c:\windows\system32\aticalrt.dll
2010-02-03 04:12 . 2010-02-19 16:24 45056 ----a-w- c:\windows\system32\aticalcl.dll
2010-02-03 04:10 . 2010-02-19 16:24 3633152 ----a-w- c:\windows\system32\aticaldd.dll
2010-02-03 04:02 . 2010-02-19 16:24 14188544 ----a-w- c:\windows\system32\atioglxx.dll
2010-02-03 03:50 . 2008-03-12 20:55 3566048 ----a-w- c:\windows\system32\ati3duag.dll
2010-02-03 03:39 . 2008-03-12 21:15 301568 ----a-w- c:\windows\system32\ati2dvag.dll
2010-02-03 03:35 . 2010-02-15 08:28 2176640 ----a-w- c:\windows\system32\ativvaxx.dll
2010-02-03 03:32 . 2010-02-19 16:24 397312 ----a-w- c:\windows\system32\atiok3x2.dll
2010-02-03 03:23 . 2010-02-19 16:24 208896 ----a-w- c:\windows\system32\atipdlxx.dll
2010-02-03 03:23 . 2010-02-19 16:24 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2010-02-03 03:23 . 2010-02-19 16:24 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2010-02-03 03:23 . 2010-02-19 16:24 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2010-02-03 03:22 . 2010-02-19 16:24 159744 ----a-w- c:\windows\system32\ati2evxx.dll
2010-02-03 03:21 . 2010-02-19 16:24 602112 ----a-w- c:\windows\system32\ati2evxx.exe
2010-02-03 03:19 . 2010-02-19 16:24 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2010-02-03 03:19 . 2010-02-19 16:24 143360 ----a-w- c:\windows\system32\atiapfxx.exe
2010-02-03 03:18 . 2010-02-19 16:24 65024 ----a-w- c:\windows\system32\atimpc32.dll
2010-02-03 03:18 . 2010-02-19 16:24 65024 ----a-w- c:\windows\system32\amdpcom32.dll
2010-02-03 03:17 . 2010-02-19 16:24 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2010-02-03 03:15 . 2010-02-19 16:24 565248 ----a-w- c:\windows\system32\atikvmag.dll
2010-02-03 03:12 . 2010-02-19 16:24 180224 ----a-w- c:\windows\system32\atiadlxx.dll
2010-02-03 03:12 . 2010-02-19 16:24 17408 ----a-w- c:\windows\system32\atitvo32.dll
2010-02-03 03:06 . 2008-03-12 20:24 638976 ----a-w- c:\windows\system32\ati2cqag.dll
2009-12-31 16:50 . 2001-10-25 14:00 353792 ----a-w- c:\windows\system32\drivers\srv.sys
2009-12-21 19:08 . 2002-09-20 18:05 916480 ------w- c:\windows\system32\wininet.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-03-17_18.22.46 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-03-17 18:32 . 2010-03-17 18:32 5120 c:\windows\Installer\{789289CA-F73A-4A16-A331-54D498CE069F}\Icon789289CA.exe
- 2010-03-09 18:40 . 2010-03-09 18:40 5120 c:\windows\Installer\{789289CA-F73A-4A16-A331-54D498CE069F}\Icon789289CA.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ICQ"="c:\program files\ICQ6.5\ICQ.exe" [2009-11-16 172792]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"High Definition Audio Property Page Shortcut"="HDAShCut.exe" [2005-01-07 61952]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-02-02 98304]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2005-05-21 925696]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ \0p
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\CAPCOM\\RESIDENT EVIL 5\\RE5DX9.EXE"=
"c:\\Program Files\\CAPCOM\\RESIDENT EVIL 5\\RE5DX10.EXE"=
"c:\\Program Files\\World of Warcraft\\Launcher.exe"=
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [23.2.2010 23:29 691696]
.
.
------- Doplňkový sken -------
.
uStart Page =
hxxp://www.seznam.cz/IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
DPF: DirectAnimation Java Classes -
file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java -
file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\0yll70qk.default\
FF - prefs.js: browser.startup.homepage -
www.seznam.cz---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2010-03-17 22:33
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-329068152-2049760794-682003330-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,3c,90,79,60,89,51,38,42,9e,ee,2d,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,3c,90,79,60,89,51,38,42,9e,ee,2d,\
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(640)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
- - - - - - - > 'explorer.exe'(3668)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Celkový čas: 2010-03-17 22:35:50 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-03-17 21:35
ComboFix2.txt 2010-03-17 18:23
Před spuštěním: Volných bajtů: 102 997 950 464
Po spuštění: Volných bajtů: 102 966 231 040
- - End Of File - - F29DCD952597A385002ECE17209EACBF