Hijack this - prosím o kontrolu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

ROCK4891
Level 2.5
Level 2.5
Příspěvky: 307
Registrován: červenec 10
Pohlaví: Muž
Stav:
Offline

Hijack this - prosím o kontrolu

Příspěvekod ROCK4891 » 31 črc 2010 09:47

prosím o kontrolu lebo mi seká notebook...aj hudbu aj hry...neviem preco...pomali sa zapína aj vypína...dakujem
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:43:40, on 31.7.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\System Control Manager\edd.exe
D:\HRY\Medal of Honor - AirBone\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe
C:\Program Files\Microsoft Private Folder 1.0\PrfldSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Atheros\ACU.exe
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\HSDPA USB Modem\WellPhone XT\wellphone2.exe
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT2077543
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.irfanview.net/faq.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R3 - URLSearchHook: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTogg.dll
O2 - BHO: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTogg.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: NP Helper Class - {35B8D58C-B0CB-46b0-BA64-05B3804E4E86} - C:\Program Files\Internet Saving Optimizer\3.8.1.4690\NPIEAddOn.dll
O2 - BHO: (no name) - {60270dc7-9ea0-472f-9b77-66652c06246e} - (no file)
O2 - BHO: UrlHelper Class - {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTogg.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Policies\Explorer\Run: [sysinit] C:\WINDOWS\sysinit.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Download with Star Downloader - C:\PROGRA~1\Star Downloader\sdie.htm
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://D:\OFFICE2000\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {09E90109-A9AA-4980-BCEF-76F8D924E902} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\OFFICE2000\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - {09E90109-A9AA-4980-BCEF-76F8D924E902} - (no file) (HKCU)
O9 - Extra button: Absolute Poker - {1FBA04EE-3024-11d2-8F1F-0000F87ABD16} - C:\Documents and Settings\Murko Martin\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk (file missing) (HKCU)
O9 - Extra 'Tools' menuitem: Absolute Poker - {1FBA04EE-3024-11d2-8F1F-0000F87ABD16} - C:\Documents and Settings\Murko Martin\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk (file missing) (HKCU)
O15 - Trusted Zone: http://asia.msi.com.tw
O15 - Trusted Zone: http://global.msi.com.tw
O15 - Trusted Zone: http://www.msi.com.tw
O17 - HKLM\System\CCS\Services\Tcpip\..\{E1D5CA1A-5972-401A-9A53-F8894E048043}: NameServer = 213.151.200.30 213.151.208.161
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\Skype4COM.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate1c9d8098fa40f2e) (gupdate1c9d8098fa40f2e) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - C:\Program Files\System Control Manager\edd.exe
O23 - Service: PunkBuster (PnkBstrA) - Unknown owner - D:\HRY\Medal of Honor - AirBone\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe
O23 - Service: Private Folder Service (prfldsvc) - Unknown owner - C:\Program Files\Microsoft Private Folder 1.0\PrfldSvc.exe
O23 - Service: Sukoku Service - Unknown owner - C:\Documents and Settings\All Users\Application Data\Sukoku\sukoku125.exe

--
End of file - 8443 bytes

Reklama
Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod bledulka » 31 črc 2010 19:16

Ahoj,


Spustíš program HJT

-klikni na tlačítko Do a system scan and save a logfile
-Vyběhne tabulka, na začátku každého řádku je čtvereček.
-U řádku , který jsem označila, dáš do čtverečku
fajfku

Kód: Vybrat vše

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT2077543
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
O2 - BHO: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTogg.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: NP Helper Class - {35B8D58C-B0CB-46b0-BA64-05B3804E4E86} - C:\Program Files\Internet Saving Optimizer\3.8.1.4690\NPIEAddOn.dll
O2 - BHO: (no name) - {60270dc7-9ea0-472f-9b77-66652c06246e} - (no file)
O2 - BHO: UrlHelper Class - {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} - (no file)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTogg.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Policies\Explorer\Run: [sysinit] C:\WINDOWS\sysinit.exe
O9 - Extra button: (no name) - {09E90109-A9AA-4980-BCEF-76F8D924E902} - (no file)
O9 - Extra button: Absolute Poker - {1FBA04EE-3024-11d2-8F1F-0000F87ABD16} - C:\Documents and Settings\Murko Martin\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk (file missing) (HKCU)
O9 - Extra 'Tools' menuitem: Absolute Poker - {1FBA04EE-3024-11d2-8F1F-0000F87ABD16} - C:\Documents and Settings\Murko Martin\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk (file missing) (HKCU)
O15 - Trusted Zone: http://asia.msi.com.tw
O15 - Trusted Zone: http://global.msi.com.tw
O15 - Trusted Zone: http://www.msi.com.tw



-nakonec zmáčkneš tlačítko Fix checked

******************************************************************

Odinstaluj toolbary
DAEMON Tools Toolbar
ToggleEN Toolbar
Easy-WebPrint



******************************************************************

Stahni Mbam http://download.cnet.com/3001-8022_4-10 ... l-10804572
-nainstaluj, aktualizuj
-udělej uplný sken a vlož sem log

ROCK4891
Level 2.5
Level 2.5
Příspěvky: 307
Registrován: červenec 10
Pohlaví: Muž
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod ROCK4891 » 01 srp 2010 15:48

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Verzia databázy: 4376

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

1.8.2010 15:45:14
mbam-log-2010-08-01 (15-45-14).txt

Typ kontroly: Úplná kontrola (C:\|D:\|)
Objektov kontrolovaných: 227253
Uplynulý čas: 3 hod, 37 min, 41 sek

Infikované služby pamäte: 0
Infikované moduly pamäte: 0
Infikované registračné kľúče: 32
Infikované registračné hodnoty: 3
Infikované položky registračných dát: 1
Infikované priečinky: 37
Infikované súbory: 248

Infikované služby pamäte:
(Škodlivé položky neboli zistené)

Infikované moduly pamäte:
(Škodlivé položky neboli zistené)

Infikované registračné kľúče:
HKEY_CLASSES_ROOT\explorerbar.funexplorer (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\explorerbar.funexplorer.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\explorerbar.funredirector (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\explorerbar.funredirector.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{480098c6-f6ad-4c61-9b5c-2bae228a34d1} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{6160f76a-1992-4b17-a32d-0c706d159105} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{877f3eab-4462-44df-8475-6064eafd7fbf} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{883dfc00-8a21-411d-956c-73a4e4b7d16f} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{ac5ab953-ed25-4f9c-87f0-b086b0178ffa} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{c28a0312-c403-417b-a425-a915bc0519cd} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{35b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{35b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{d1aad553-dc21-471f-88e0-f58be109038d} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{6998957e-00f9-4dac-bbb1-c0ca721376c1} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Explorer\Bars\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sukoku (Adware.Agent) -> No action taken.
HKEY_CURRENT_USER\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Media Access Startup (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\DoubleD (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Media Access Startup (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{16b6279b-9ff5-41fb-8bf9-404324f5dd1f}}_is1 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1fb52ab3-5987-45a2-85e0-f3ec30dddc29}}_is1 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{c5096216-7703-409e-b85a-8a6ee7395128}}_is1 (Adware.DoubleD) -> No action taken.

Infikované registračné hodnoty:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\{0ba0192d-94a5-45e3-b2b8-3ec5a1a0b5ec} (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\{2224e955-00e9-4613-a844-ce69fccaae91} (Adware.DoubleD) -> No action taken.

Infikované položky registračných dát:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> No action taken.

Infikované priečinky:
C:\Documents and Settings\All Users\Application Data\Sukoku (Adware.Zwangi) -> No action taken.
C:\Program Files\DoubleD (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD\Desktop Smiley Toolbar (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD\GamingHarbor Toolbar (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660 (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\Data (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\FF_ (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\FF_\components (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690 (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\Data (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\content (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050 (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\Data (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\content (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\components (Adware.DoubleD) -> No action taken.
C:\Program Files\Sukoku (Adware.Zwangi) -> No action taken.
C:\Program Files\System Search Dispatcher (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.2.0.750 (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.2.0.750\Data (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.4.3.1040 (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.4.3.1040\Data (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\DoubleD (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\DoubleD\Desktop Smiley Toolbar (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\DoubleD\GamingHarbor Toolbar (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690 (Adware.DoubleD) -> Files: 625 -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\1.0.0.610 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050 (Adware.DoubleD) -> No action taken.

Infikované súbory:
C:\Documents and Settings\All Users\Application Data\Sukoku\sukoku125.exe (Adware.Ziniky) -> No action taken.
C:\Documents and Settings\Murko Martin\Desktop\other\hitman\hitman - blood money-cheats\pdtrain.exe (Malware.Packer.Gen) -> No action taken.
C:\Program Files\Nice Prosper\CashBackAssistant\CashBackAssistantIE.dll (Adware.CashBackAssistant) -> No action taken.
C:\Program Files\Sukoku\sukoku.exe (Adware.Ziniky) -> No action taken.
C:\Program Files\Sukoku\uninstall.exe (Adware.Agent) -> No action taken.
C:\Program Files\Ubisoft\Ubisoft Game Launcher\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken.
C:\System Volume Information\_restore{ACEB5191-0AF8-4340-A138-F796A043829B}\RP370\A0115252.exe (Trojan.Clicker) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\NPCommon.dll (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\NPIEAddOn.dll (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\unins000.dat (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\unins000.exe (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\Data\config.md (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\FF_\components\NPFFAddOn.dll (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\NPCommon.dll (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\unins000.dat (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\unins000.exe (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\Data\config.md (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome.manifest (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\install.rdf (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\NPAddOn.jar (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\content\NPAddOn.js (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\content\NPAddOn.xul (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFAddOn.dll (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFAddOn.xpt (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFHelperComponent.js (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\HPCommon.dll (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\hppx.exe (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\MAHelper.exe (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\unins000.dat (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\unins000.exe (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\Data\config.md (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome.manifest (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\install.rdf (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\HPAddOn.jar (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\content\HPAddOn.js (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\content\HPAddOn.xul (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFAddOn.dll (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFAddOn.xpt (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFHelperComponent.js (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.2.0.750\unins000.dat (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.2.0.750\unins000.exe (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.2.0.750\Data\eacore.mx (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.2.0.750\Data\URLDynamic.mx (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.2.0.750\Data\URLStatic.mx (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.4.3.1040\unins000.dat (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.4.3.1040\unins000.exe (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.4.3.1040\Data\eacore.mx (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.4.3.1040\Data\URLDynamic.mx (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.4.3.1040\Data\URLStatic.mx (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\1.0.0.610\config.md (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\1.0.0.610\ipdata.md (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\config.md (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-080312.171.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-080425.890.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-080702.468.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-090013.109.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-121915.234.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-140254.375.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-164440.593.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-215730.796.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-222408.578.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-222537.312.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-140500.468.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-153223.015.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-153811.109.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-171100.703.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-212752.390.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-234725.671.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-151505.000.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-205859.906.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090921-181555.625.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090921-181636.187.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090928-212839.281.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090929-220125.187.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091001-154837.593.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091005-132440.437.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-102906.109.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-143511.781.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-143514.281.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-195526.374.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-200719.796.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091218-133649.078.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091218-133750.656.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-125040.625.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-144819.093.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-163048.906.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-163549.375.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-173019.281.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-181944.515.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-100117.109.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-100728.875.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-103441.546.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-122942.421.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-124117.390.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-103608.921.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-115730.906.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-134734.156.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-150838.953.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-151448.750.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091224-105414.421.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091224-105839.515.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091228-135303.906.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100101-020201.703.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-093242.764.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-150458.390.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-211623.312.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-215428.781.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-220006.296.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100109-103426.109.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100109-140539.281.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-104047.484.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-134402.718.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-152823.359.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-200341.703.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-205432.531.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-212504.593.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-233424.796.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-071732.812.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-072415.187.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-072931.984.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-093929.375.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-101341.984.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-122212.515.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-123441.796.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-124213.750.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-124454.343.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-132237.921.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-160241.843.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-163437.234.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-165418.093.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-205054.515.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-232753.359.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-110211.046.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-135459.546.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-143032.812.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-160316.093.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-182513.187.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-214136.656.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-155138.359.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-165835.687.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-171603.250.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-173715.656.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-174012.500.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-191642.921.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-211058.906.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-230547.515.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-234924.265.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-114354.437.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-115014.406.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-152448.562.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-164723.468.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-173223.296.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-220349.781.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-230547.593.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-232528.296.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100115-092031.046.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-205044.359.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-205144.750.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-210746.390.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-210759.921.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-212607.968.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-123506.343.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-124023.828.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-124038.187.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-124102.078.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-124503.593.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-125454.515.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-144203.265.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-152946.343.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-152954.640.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-155105.078.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-165343.250.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-185227.968.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-190029.125.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-214721.328.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-231150.453.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-083805.203.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-083813.375.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-150410.156.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-152101.125.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-183739.125.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-191926.156.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-192324.609.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-194526.281.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-202857.562.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-233835.765.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-233842.812.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-140207.500.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-154805.406.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-161047.578.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-161141.656.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-185218.937.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-072511.234.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-112510.875.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-134815.500.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-134836.765.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-140427.234.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-144143.187.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-152600.921.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-162651.218.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-163957.921.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-175633.281.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-183708.718.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-224147.718.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100122-070848.421.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100122-160339.984.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-200131.718.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-211441.046.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-214003.812.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-215127.890.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-234738.484.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-074531.828.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-074732.093.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-085506.906.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-123036.859.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-123550.578.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-133429.953.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-143922.828.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-154832.703.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-164212.125.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-165910.125.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-180208.953.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-181520.312.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-181638.734.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-181748.406.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-182555.515.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-205200.125.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-083420.265.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-151007.453.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-160413.812.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-174215.718.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-194423.984.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-205521.640.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-234228.953.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-235205.750.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100127-094613.593.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100127-101229.937.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100127-104147.468.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100127-191951.484.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-113744.796.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-174245.390.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-174458.359.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-174501.843.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-214748.937.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-221705.468.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100202-095939.390.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100202-112943.843.log (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\ipdata.md (Adware.DoubleD) -> No action taken.

ROCK4891
Level 2.5
Level 2.5
Příspěvky: 307
Registrován: červenec 10
Pohlaví: Muž
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod ROCK4891 » 01 srp 2010 20:09

tak a co mam teraz stim robit...mam to vsetko odstranit...alebo co....lebo sa mi to nechce scanovat este raz...
dik za radu...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43296
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod jaro3 » 01 srp 2010 20:29

. Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit

Můžeš sem pak vložit nový log z MbAM.

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

ROCK4891
Level 2.5
Level 2.5
Příspěvky: 307
Registrován: červenec 10
Pohlaví: Muž
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod ROCK4891 » 01 srp 2010 20:55

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Verzia databázy: 4376

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

1.8.2010 20:53:25
mbam-log-2010-08-01 (20-53-25).txt

Typ kontroly: Úplná kontrola (C:\|D:\|)
Objektov kontrolovaných: 227253
Uplynulý čas: 3 hod, 37 min, 41 sek

Infikované služby pamäte: 0
Infikované moduly pamäte: 0
Infikované registračné kľúče: 32
Infikované registračné hodnoty: 3
Infikované položky registračných dát: 1
Infikované priečinky: 37
Infikované súbory: 248

Infikované služby pamäte:
(Škodlivé položky neboli zistené)

Infikované moduly pamäte:
(Škodlivé položky neboli zistené)

Infikované registračné kľúče:
HKEY_CLASSES_ROOT\explorerbar.funexplorer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.funexplorer.1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.funredirector (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.funredirector.1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{480098c6-f6ad-4c61-9b5c-2bae228a34d1} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6160f76a-1992-4b17-a32d-0c706d159105} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{877f3eab-4462-44df-8475-6064eafd7fbf} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{883dfc00-8a21-411d-956c-73a4e4b7d16f} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{ac5ab953-ed25-4f9c-87f0-b086b0178ffa} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{c28a0312-c403-417b-a425-a915bc0519cd} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{35b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{35b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{d1aad553-dc21-471f-88e0-f58be109038d} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6998957e-00f9-4dac-bbb1-c0ca721376c1} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Explorer\Bars\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sukoku (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{16b6279b-9ff5-41fb-8bf9-404324f5dd1f}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1fb52ab3-5987-45a2-85e0-f3ec30dddc29}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{c5096216-7703-409e-b85a-8a6ee7395128}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.

Infikované registračné hodnoty:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\{0ba0192d-94a5-45e3-b2b8-3ec5a1a0b5ec} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\{2224e955-00e9-4613-a844-ce69fccaae91} (Adware.DoubleD) -> Quarantined and deleted successfully.

Infikované položky registračných dát:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.

Infikované priečinky:
C:\Documents and Settings\All Users\Application Data\Sukoku (Adware.Zwangi) -> Quarantined and deleted successfully.
C:\Program Files\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\DoubleD\Desktop Smiley Toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\DoubleD\GamingHarbor Toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660 (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\FF_ (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\FF_\components (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690 (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\content (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050 (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\content (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\components (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Sukoku (Adware.Zwangi) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.2.0.750 (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.2.0.750\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.4.3.1040 (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.4.3.1040\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\DoubleD\Desktop Smiley Toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\DoubleD\GamingHarbor Toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Internet Saving Optimizer (Adware.DoubleD) -> Delete on reboot.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690 (Adware.DoubleD) -> Delete on reboot.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690 (Adware.DoubleD) -> Files: 625 -> Delete on reboot.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\1.0.0.610 (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050 (Adware.DoubleD) -> Quarantined and deleted successfully.

Infikované súbory:
C:\Documents and Settings\All Users\Application Data\Sukoku\sukoku125.exe (Adware.Ziniky) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Desktop\other\hitman\hitman - blood money-cheats\pdtrain.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\Program Files\Nice Prosper\CashBackAssistant\CashBackAssistantIE.dll (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
C:\Program Files\Sukoku\sukoku.exe (Adware.Ziniky) -> Quarantined and deleted successfully.
C:\Program Files\Sukoku\uninstall.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Program Files\Ubisoft\Ubisoft Game Launcher\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{ACEB5191-0AF8-4340-A138-F796A043829B}\RP370\A0115252.exe (Trojan.Clicker) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\NPCommon.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\NPIEAddOn.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\Data\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\2.1.0.2660\FF_\components\NPFFAddOn.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\NPCommon.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\Data\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome.manifest (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\install.rdf (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\NPAddOn.jar (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\content\NPAddOn.js (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\content\NPAddOn.xul (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFAddOn.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFAddOn.xpt (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFHelperComponent.js (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\HPCommon.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\hppx.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\MAHelper.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\Data\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome.manifest (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\install.rdf (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\HPAddOn.jar (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\content\HPAddOn.js (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\content\HPAddOn.xul (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFAddOn.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFAddOn.xpt (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFHelperComponent.js (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.2.0.750\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.2.0.750\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.2.0.750\Data\eacore.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.2.0.750\Data\URLDynamic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.2.0.750\Data\URLStatic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.4.3.1040\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.4.3.1040\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.4.3.1040\Data\eacore.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.4.3.1040\Data\URLDynamic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files\System Search Dispatcher\1.4.3.1040\Data\URLStatic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\1.0.0.610\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\1.0.0.610\ipdata.md (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-080312.171.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-080425.890.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-080702.468.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-090013.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-121915.234.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-140254.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-164440.593.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-215730.796.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-222408.578.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-222537.312.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-140500.468.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-153223.015.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-153811.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-171100.703.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-212752.390.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-234725.671.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-151505.000.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-205859.906.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090921-181555.625.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090921-181636.187.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090928-212839.281.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090929-220125.187.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091001-154837.593.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091005-132440.437.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-102906.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-143511.781.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-143514.281.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-195526.374.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091217-200719.796.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091218-133649.078.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091218-133750.656.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-125040.625.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-144819.093.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-163048.906.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-163549.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-173019.281.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091219-181944.515.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-100117.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-100728.875.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-103441.546.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-122942.421.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091221-124117.390.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-103608.921.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-115730.906.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-134734.156.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-150838.953.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091222-151448.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091224-105414.421.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091224-105839.515.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20091228-135303.906.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100101-020201.703.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-093242.764.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-150458.390.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-211623.312.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-215428.781.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100108-220006.296.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100109-103426.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100109-140539.281.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-104047.484.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-134402.718.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-152823.359.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-200341.703.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-205432.531.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-212504.593.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100110-233424.796.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-071732.812.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-072415.187.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-072931.984.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-093929.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-101341.984.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-122212.515.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-123441.796.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-124213.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-124454.343.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-132237.921.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-160241.843.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-163437.234.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-165418.093.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-205054.515.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100111-232753.359.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-110211.046.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-135459.546.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-143032.812.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-160316.093.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-182513.187.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100112-214136.656.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-155138.359.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-165835.687.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-171603.250.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-173715.656.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-174012.500.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-191642.921.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-211058.906.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-230547.515.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100113-234924.265.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-114354.437.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-115014.406.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-152448.562.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-164723.468.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-173223.296.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-220349.781.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-230547.593.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100114-232528.296.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100115-092031.046.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-205044.359.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-205144.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-210746.390.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-210759.921.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100117-212607.968.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-123506.343.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-124023.828.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-124038.187.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-124102.078.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-124503.593.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-125454.515.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-144203.265.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-152946.343.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-152954.640.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-155105.078.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-165343.250.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-185227.968.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-190029.125.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-214721.328.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100118-231150.453.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-083805.203.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-083813.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-150410.156.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-152101.125.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-183739.125.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-191926.156.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-192324.609.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-194526.281.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-202857.562.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-233835.765.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100119-233842.812.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-140207.500.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-154805.406.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-161047.578.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-161141.656.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100120-185218.937.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-072511.234.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-112510.875.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-134815.500.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-134836.765.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-140427.234.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-144143.187.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-152600.921.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-162651.218.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-163957.921.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-175633.281.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-183708.718.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100121-224147.718.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100122-070848.421.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100122-160339.984.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-200131.718.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-211441.046.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-214003.812.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-215127.890.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100124-234738.484.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-074531.828.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-074732.093.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-085506.906.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-123036.859.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-123550.578.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-133429.953.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-143922.828.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-154832.703.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-164212.125.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-165910.125.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-180208.953.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-181520.312.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-181638.734.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-181748.406.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-182555.515.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100125-205200.125.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-083420.265.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-151007.453.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-160413.812.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-174215.718.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-194423.984.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-205521.640.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-234228.953.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100126-235205.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100127-094613.593.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100127-101229.937.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100127-104147.468.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100127-191951.484.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-113744.796.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-174245.390.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-174458.359.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-174501.843.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-214748.937.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100128-221705.468.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100202-095939.390.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20100202-112943.843.log (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Documents and Settings\Murko Martin\Local Settings\Application Data\Media Access Startup\2.0.0.1050\ipdata.md (Adware.DoubleD) -> Quarantined and deleted successfully.

Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod bledulka » 01 srp 2010 21:28

Ještě počkám na ten log z combofixu :lookround:

ROCK4891
Level 2.5
Level 2.5
Příspěvky: 307
Registrován: červenec 10
Pohlaví: Muž
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod ROCK4891 » 01 srp 2010 22:07

ComboFix 10-07-31.04 - Murko Martin 01.08.2010 21:44:16.1.2 - x86
Systém Microsoft Windows XP Home Edition 5.1.2600.3.1250.421.1033.18.2047.1638 [GMT 2:00]
Running from: c:\documents and settings\Murko Martin\Desktop\ComboFix.exe
AV: avast! Antivirus *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Murko Martin\Application Data\BITS
c:\documents and settings\Murko Martin\Application Data\BITS\BITS.ini
c:\documents and settings\Murko Martin\Application Data\BITS\DHTTable.dat
c:\documents and settings\Murko Martin\Application Data\BITS\ProxyList.ini
c:\documents and settings\Murko Martin\Application Data\BITS\UPnP.ini
c:\documents and settings\Murko Martin\Application Data\EurekaLog
c:\documents and settings\Murko Martin\My Documents\cc_20100731_122746.reg
c:\program files\FlashGet Network
c:\program files\FlashGet Network\FlashGet universal\fgoption.ini
c:\program files\FlashGet Network\FlashGet universal\P2PCfg.ini
c:\program files\FlashGet Network\FlashGet universal\p2spmgr.ini
c:\program files\FlashGet Network\FlashGet universal\p4spmgr.ini
c:\program files\FlashGet Network\FlashGet universal\Profiles\config.dat
c:\program files\FlashGet Network\FlashGet universal\Profiles\tasks.dat
c:\program files\Nice Prosper
c:\program files\Nice Prosper\CashBackAssistant\cfcpxlog.mx
c:\program files\Nice Prosper\CashBackAssistant\MatchingData.zd5
c:\program files\Nice Prosper\CashBackAssistant\setup.exe
c:\program files\Nice Prosper\CashBackAssistant\unins000.dat
c:\program files\Nice Prosper\CashBackAssistant\unins000.exe

.
((((((((((((((((((((((((( Files Created from 2010-07-01 to 2010-08-01 )))))))))))))))))))))))))))))))
.

2010-08-01 09:54 . 2010-08-01 09:54 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\Malwarebytes
2010-08-01 09:54 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-08-01 09:54 . 2010-08-01 09:54 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-08-01 09:54 . 2010-08-01 09:54 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-08-01 09:54 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-07-31 07:56 . 2010-07-31 07:56 -------- d-----w- c:\program files\CPUID
2010-07-31 07:56 . 2009-03-26 23:16 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2010-07-31 07:42 . 2010-07-31 07:42 388096 ----a-r- c:\documents and settings\Murko Martin\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-07-31 07:42 . 2010-07-31 07:42 -------- d-----w- c:\program files\Trend Micro
2010-07-14 15:08 . 2010-06-28 20:57 38848 ----a-w- c:\windows\avastSS.scr
2010-07-14 15:07 . 2010-07-14 15:07 -------- d-----w- c:\documents and settings\All Users\Application Data\Alwil Software

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-08-01 17:33 . 2010-04-30 15:43 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2010-08-01 17:04 . 2009-01-26 09:46 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\vlc
2010-07-28 20:18 . 2008-08-15 11:08 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\Skype
2010-07-28 20:06 . 2009-10-24 14:01 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\skypePM
2010-07-26 17:15 . 2009-11-25 13:04 -------- d-----w- c:\program files\Nexus Radio
2010-07-26 17:13 . 2010-05-09 11:41 -------- d-----w- c:\program files\LG Electronics
2010-07-26 17:11 . 2008-08-15 09:40 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-07-26 17:06 . 2010-06-29 13:33 -------- d-----w- c:\program files\Anti-Blaxx
2010-07-25 17:51 . 2008-08-15 15:58 -------- d-----w- c:\program files\Common Files\EasyInfo
2010-07-25 15:05 . 2009-03-23 21:23 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\Any Video Converter
2010-07-14 15:11 . 2008-08-15 10:42 -------- d-----w- c:\program files\Alwil Software
2010-07-02 16:57 . 2008-08-15 10:50 -------- d-----r- c:\program files\Skype
2010-07-02 16:57 . 2010-07-02 16:57 -------- d-----w- c:\program files\Common Files\Skype
2010-07-02 16:57 . 2008-08-15 10:50 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2010-07-01 15:00 . 2010-05-07 07:12 249856 ------w- c:\windows\Setup1.exe
2010-07-01 15:00 . 2010-05-07 07:11 73216 ----a-w- c:\windows\ST6UNST.EXE
2010-06-28 20:57 . 2009-07-09 07:53 165032 ----a-w- c:\windows\system32\aswBoot.exe
2010-06-28 20:37 . 2009-07-09 07:53 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-06-28 20:37 . 2009-07-09 07:53 165456 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-06-28 20:33 . 2009-07-09 07:53 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-06-28 20:32 . 2009-07-09 07:53 100176 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2010-06-28 20:32 . 2009-07-09 07:53 94544 ----a-w- c:\windows\system32\drivers\aswmon.sys
2010-06-28 20:32 . 2009-07-09 07:53 17744 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-06-28 20:32 . 2009-07-09 07:53 28880 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2010-06-25 15:49 . 2010-05-20 08:30 -------- d-----w- c:\documents and settings\All Users\Application Data\Norton
2010-06-23 18:32 . 2009-11-22 19:43 -------- d-----w- c:\program files\DivX
2010-06-23 18:31 . 2009-11-22 19:43 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-06-23 18:30 . 2010-05-20 07:58 57344 ----a-w- c:\documents and settings\All Users\Application Data\DivX\RunAsUser\RUNASUSERPROCESS.dll
2010-06-23 18:29 . 2010-05-20 07:41 -------- d-----w- c:\documents and settings\All Users\Application Data\DivX
2010-06-23 14:07 . 2009-07-25 07:52 1 ----a-w- c:\documents and settings\Murko Martin\Application Data\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-06-21 14:16 . 2010-06-21 14:10 -------- d-----w- c:\program files\Arjaloc
2010-06-21 14:05 . 2010-06-21 14:05 -------- d-----w- c:\documents and settings\All Users\Application Data\NovaTech Network
2010-06-19 14:02 . 2010-01-19 18:30 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2010-05-20 08:36 . 2010-05-20 07:58 530704 ----a-w- c:\documents and settings\All Users\Application Data\DivX\DivX7\DivX Plus DirectShow Filters\DivXDSFiltersUninstall.exe
2010-05-20 08:35 . 2010-05-20 07:58 530704 ----a-w- c:\documents and settings\All Users\Application Data\DivX\DivX7\DivX Converter\DivXConverterUninstall.exe
2010-05-20 08:35 . 2010-06-23 18:21 530704 ----a-w- c:\documents and settings\All Users\Application Data\DivX\DivX7\DivX Codec\DivXCodecUninstall.exe
2010-05-08 21:31 . 2010-05-08 21:31 279712 ----a-w- c:\windows\system32\drivers\atksgt.sys
2010-05-08 21:31 . 2010-05-08 21:31 25888 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2010-05-06 10:41 . 2006-02-28 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"RTHDCPL"="RTHDCPL.EXE" [2007-07-05 16380416]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 110592]
"AGRSMMSG"="AGRSMMSG.exe" [2006-06-29 89541]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"ACU"="c:\program files\Atheros\ACU.exe" [2007-04-16 372825]
"avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2010-06-28 2837864]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Anti-Blaxx Manager]
2005-05-18 14:08 208896 ----a-w- c:\program files\Anti-Blaxx\Anti-Blaxx.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2008-07-24 15:02 490952 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedBitVideoAccelerator]
2008-10-26 19:27 2705008 ----a-w- c:\program files\SpeedBit Video Accelerator\VideoAccelerator.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wscsvc"=2 (0x2)
"SamSs"=2 (0x2)
"VideoAcceleratorService"=2 (0x2)
"WMPNetworkSvc"=3 (0x3)
"idsvc"=3 (0x3)
"NishService"=2 (0x2)
"NMIndexingService"=3 (0x3)
"IDriverT"=3 (0x3)
"BITS"=2 (0x2)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\SpeedBit Video Accelerator\\VideoAccelerator.exe"=
"d:\\Slovniky\\TRANSLAT\\WEBTRANS.EXE"=
"c:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe"=
"d:\\OFFICE2000\\Office12\\OUTLOOK.EXE"=
"d:\\HRY\\Medal of Honor - AirBone\\UnrealEngine3\\Binaries\\MOHA.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [9.7.2009 9:53 165456]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [9.7.2009 9:53 17744]
R2 Prvflder;Prvflder;c:\windows\system32\drivers\prvflder.sys [21.4.2006 9:22 70912]
R3 MGHwCtrl;MGHwCtrl;c:\windows\system32\drivers\MGHwCtrl.sys [26.1.2009 21:12 9088]
S2 gupdate1c9d8098fa40f2e;Služba Google Update (gupdate1c9d8098fa40f2e);c:\program files\Google\Update\GoogleUpdate.exe [19.5.2009 0:39 133104]
S2 gvkwh;Center Windows;c:\windows\system32\svchost.exe -k netsvcs [28.2.2006 14:00 14336]
S2 NishService;SCM Driver Daemon;c:\program files\System Control Manager\edd.exe [26.1.2009 21:12 40960]
S2 Sukoku Service;Sukoku Service;"c:\documents and settings\All Users\Application Data\Sukoku\sukoku125.exe" "c:\program files\Sukoku\sukoku.dll" Service --> c:\documents and settings\All Users\Application Data\Sukoku\sukoku125.exe [?]
S3 TF1D091010;TF1D091010;c:\windows\system32\drivers\TF1D091010.sys [2.2.2008 1:37 99968]
S3 w300mgmt;Sony Ericsson W300 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\w300mgmt.sys [28.8.2008 16:33 87824]
S3 w300obex;Sony Ericsson W300 USB WMC OBEX Interface;c:\windows\system32\drivers\w300obex.sys [28.8.2008 16:00 85696]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [30.4.2010 17:40 717296]
S4 VideoAcceleratorService;VideoAcceleratorService;c:\progra~1\SpeedBit Video Accelerator\VideoAcceleratorService.exe -start -scm --> c:\progra~1\SpeedBit Video Accelerator\VideoAcceleratorService.exe -start -scm [?]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
gvkwh
.
Contents of the 'Scheduled Tasks' folder

2010-07-26 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]

2010-08-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-18 22:39]

2010-08-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-18 22:39]
.
.
------- Supplementary Scan -------
.
uInternet Connection Wizard,ShellNext = hxxp://www.irfanview.net/faq.htm
uInternet Settings,ProxyOverride = local
IE: Download with Star Downloader - c:\progra~1\Star Downloader\sdie.htm
IE: E&xportovať do programu Microsoft Excel - d:\office2000\Office12\EXCEL.EXE/3000
.
- - - - ORPHANS REMOVED - - - -

WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
MSConfigStartUp-SmartRAM - c:\program files\IObit\Advanced SystemCare 3\Sup_SmartRAM.exe
AddRemove-{091ED936-E610-497D-B651-0E4BF73CE598}_is1 - c:\program files\Nice Prosper\CashBackAssistant\unins000.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-08-01 21:52
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gvkwh]
"ServiceDll"="c:\windows\system32\wynbjol.dll"
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_USERS\S-1-5-21-299502267-343818398-725345543-1004\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:42,7f,ba,a6,f8,17,d2,63,1a,41,3a,d1,b7,67,ca,76,0e,96,90,9f,c7,ad,4f,
ba,70,00,fa,02,5d,b7,67,d6,f1,5b,d1,09,69,ef,b2,da,21,92,58,a7,c8,66,6b,ab,\
"??"=hex:15,dd,9b,4d,e8,b1,77,f7,6e,d3,38,80,b1,b4,dd,f8

[HKEY_USERS\S-1-5-21-299502267-343818398-725345543-1004\Software\SecuROM\License information*]
"datasecu"=hex:02,e7,d9,09,27,8b,a1,53,9e,4f,d6,09,95,7f,a3,1a,ac,2d,13,b6,83,
26,8e,2b,0b,c0,fb,04,ad,17,66,1d,f3,ae,06,03,4f,30,79,9e,4e,83,43,60,11,ba,\
"rkeysecu"=hex:de,36,ca,26,f8,43,cd,dc,d8,d9,ac,9e,b4,22,75,95
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(1200)
c:\windows\system32\Ati2evxx.dll
.
Completion time: 2010-08-01 21:57:11
ComboFix-quarantined-files.txt 2010-08-01 19:57

Pre-Run: 50 542 837 760 bytes free
Post-Run: 18 adresárov, 50 577 633 280 voľných bajtov

- - End Of File - - B98C93020D11191098F3BE20A18C7531

Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod bledulka » 01 srp 2010 22:47

Combofix přesuň na plochu
-otevři si Poznámkový blok
-Do něj zkopíruj text z tohoto okénka

Kód: Vybrat vše

KillAll::

Collect::
c:\windows\system32\wynbjol.dll

Folder::
c:\documents and settings\All Users\Application Data\Sukoku
c:\program files\DAEMON Tools Toolbar

Driver::
gvkwh
Sukoku Service

Netsvc::
gvkwh

DDS::
uInternet Connection Wizard,ShellNext = hxxp://www.irfanview.net/faq.htm

 

-vytvořený TXT soubor ulož jako CFScript.txt na plochu a levým myšítkem přesuň nad ikonu Combofixu, kde ho upustíš

-Po proběhnutí skenu a ukončení combofixu by se měl objevit log, vlož ho zde.

Upozornění : Může se stát, že po aplikaci skriptu a restartu počítače Windows nenaběhnou, pak znovu restartuj počítač, mačkej F8 a pak zvol poslední známou funkční konfiguraci.

ROCK4891
Level 2.5
Level 2.5
Příspěvky: 307
Registrován: červenec 10
Pohlaví: Muž
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod ROCK4891 » 02 srp 2010 09:25

ComboFix 10-07-31.04 - Murko Martin 02.08.2010 8:45.2.2 - x86
Systém Microsoft Windows XP Home Edition 5.1.2600.3.1250.421.1033.18.2047.1639 [GMT 2:00]
Running from: c:\documents and settings\Murko Martin\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Murko Martin\Desktop\CFScript.txt
AV: avast! Antivirus *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\DAEMON Tools Toolbar
c:\program files\DAEMON Tools Toolbar\_DTLite.xml

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_GVKWH
-------\Legacy_SUKOKU_SERVICE
-------\Service_gvkwh
-------\Service_Sukoku Service


((((((((((((((((((((((((( Files Created from 2010-07-02 to 2010-08-02 )))))))))))))))))))))))))))))))
.

2010-08-01 09:54 . 2010-08-01 09:54 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\Malwarebytes
2010-08-01 09:54 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-08-01 09:54 . 2010-08-01 09:54 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-08-01 09:54 . 2010-08-01 09:54 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-08-01 09:54 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-07-31 07:56 . 2010-07-31 07:56 -------- d-----w- c:\program files\CPUID
2010-07-31 07:56 . 2009-03-26 23:16 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2010-07-31 07:42 . 2010-07-31 07:42 -------- d-----w- c:\program files\Trend Micro
2010-07-14 15:08 . 2010-06-28 20:57 38848 ----a-w- c:\windows\avastSS.scr
2010-07-14 15:07 . 2010-07-14 15:07 -------- d-----w- c:\documents and settings\All Users\Application Data\Alwil Software

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-08-01 17:04 . 2009-01-26 09:46 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\vlc
2010-07-31 07:42 . 2010-07-31 07:42 388096 ----a-r- c:\documents and settings\Murko Martin\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-07-28 20:18 . 2008-08-15 11:08 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\Skype
2010-07-28 20:06 . 2009-10-24 14:01 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\skypePM
2010-07-26 17:15 . 2009-11-25 13:04 -------- d-----w- c:\program files\Nexus Radio
2010-07-26 17:13 . 2010-05-09 11:41 -------- d-----w- c:\program files\LG Electronics
2010-07-26 17:11 . 2008-08-15 09:40 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-07-26 17:06 . 2010-06-29 13:33 -------- d-----w- c:\program files\Anti-Blaxx
2010-07-25 17:51 . 2008-08-15 15:58 -------- d-----w- c:\program files\Common Files\EasyInfo
2010-07-25 15:05 . 2009-03-23 21:23 -------- d-----w- c:\documents and settings\Murko Martin\Application Data\Any Video Converter
2010-07-14 15:11 . 2008-08-15 10:42 -------- d-----w- c:\program files\Alwil Software
2010-07-02 16:57 . 2008-08-15 10:50 -------- d-----r- c:\program files\Skype
2010-07-02 16:57 . 2010-07-02 16:57 -------- d-----w- c:\program files\Common Files\Skype
2010-07-02 16:57 . 2008-08-15 10:50 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2010-07-01 15:00 . 2010-05-07 07:12 249856 ------w- c:\windows\Setup1.exe
2010-07-01 15:00 . 2010-05-07 07:11 73216 ----a-w- c:\windows\ST6UNST.EXE
2010-06-28 20:57 . 2009-07-09 07:53 165032 ----a-w- c:\windows\system32\aswBoot.exe
2010-06-28 20:37 . 2009-07-09 07:53 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-06-28 20:37 . 2009-07-09 07:53 165456 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-06-28 20:33 . 2009-07-09 07:53 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-06-28 20:32 . 2009-07-09 07:53 100176 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2010-06-28 20:32 . 2009-07-09 07:53 94544 ----a-w- c:\windows\system32\drivers\aswmon.sys
2010-06-28 20:32 . 2009-07-09 07:53 17744 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-06-28 20:32 . 2009-07-09 07:53 28880 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2010-06-25 15:49 . 2010-05-20 08:30 -------- d-----w- c:\documents and settings\All Users\Application Data\Norton
2010-06-23 18:32 . 2009-11-22 19:43 -------- d-----w- c:\program files\DivX
2010-06-23 18:31 . 2009-11-22 19:43 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-06-23 18:30 . 2010-05-20 07:58 57344 ----a-w- c:\documents and settings\All Users\Application Data\DivX\RunAsUser\RUNASUSERPROCESS.dll
2010-06-23 18:29 . 2010-05-20 07:41 -------- d-----w- c:\documents and settings\All Users\Application Data\DivX
2010-06-23 14:07 . 2009-07-25 07:52 1 ----a-w- c:\documents and settings\Murko Martin\Application Data\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-06-21 14:16 . 2010-06-21 14:10 -------- d-----w- c:\program files\Arjaloc
2010-06-21 14:05 . 2010-06-21 14:05 -------- d-----w- c:\documents and settings\All Users\Application Data\NovaTech Network
2010-06-19 14:02 . 2010-01-19 18:30 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2010-06-09 08:06 . 2010-06-09 08:06 976832 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\28263\AdobeARM.exe
2010-06-09 08:06 . 2010-06-09 08:06 70584 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\28263\AdobeExtractFiles.dll
2010-06-09 08:06 . 2010-06-09 08:06 331176 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\28263\ReaderUpdater.exe
2010-06-09 08:06 . 2010-06-09 08:06 331176 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\28263\AcrobatUpdater.exe
2010-05-20 08:36 . 2010-05-20 07:58 530704 ----a-w- c:\documents and settings\All Users\Application Data\DivX\DivX7\DivX Plus DirectShow Filters\DivXDSFiltersUninstall.exe
2010-05-20 08:35 . 2010-05-20 07:58 530704 ----a-w- c:\documents and settings\All Users\Application Data\DivX\DivX7\DivX Converter\DivXConverterUninstall.exe
2010-05-20 08:35 . 2010-06-23 18:21 530704 ----a-w- c:\documents and settings\All Users\Application Data\DivX\DivX7\DivX Codec\DivXCodecUninstall.exe
2010-05-08 21:31 . 2010-05-08 21:31 279712 ----a-w- c:\windows\system32\drivers\atksgt.sys
2010-05-08 21:31 . 2010-05-08 21:31 25888 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2010-05-06 10:41 . 2006-02-28 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"RTHDCPL"="RTHDCPL.EXE" [2007-07-05 16380416]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 110592]
"AGRSMMSG"="AGRSMMSG.exe" [2006-06-29 89541]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"ACU"="c:\program files\Atheros\ACU.exe" [2007-04-16 372825]
"avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2010-06-28 2837864]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Anti-Blaxx Manager]
2005-05-18 14:08 208896 ----a-w- c:\program files\Anti-Blaxx\Anti-Blaxx.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2008-07-24 15:02 490952 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedBitVideoAccelerator]
2008-10-26 19:27 2705008 ----a-w- c:\program files\SpeedBit Video Accelerator\VideoAccelerator.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wscsvc"=2 (0x2)
"SamSs"=2 (0x2)
"VideoAcceleratorService"=2 (0x2)
"WMPNetworkSvc"=3 (0x3)
"idsvc"=3 (0x3)
"NishService"=2 (0x2)
"NMIndexingService"=3 (0x3)
"IDriverT"=3 (0x3)
"BITS"=2 (0x2)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\SpeedBit Video Accelerator\\VideoAccelerator.exe"=
"d:\\Slovniky\\TRANSLAT\\WEBTRANS.EXE"=
"c:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe"=
"d:\\OFFICE2000\\Office12\\OUTLOOK.EXE"=
"d:\\HRY\\Medal of Honor - AirBone\\UnrealEngine3\\Binaries\\MOHA.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [9.7.2009 9:53 165456]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [9.7.2009 9:53 17744]
R2 NishService;SCM Driver Daemon;c:\program files\System Control Manager\edd.exe [26.1.2009 21:12 40960]
R2 Prvflder;Prvflder;c:\windows\system32\drivers\prvflder.sys [21.4.2006 9:22 70912]
R3 MGHwCtrl;MGHwCtrl;c:\windows\system32\drivers\MGHwCtrl.sys [26.1.2009 21:12 9088]
S2 gupdate1c9d8098fa40f2e;Služba Google Update (gupdate1c9d8098fa40f2e);c:\program files\Google\Update\GoogleUpdate.exe [19.5.2009 0:39 133104]
S3 TF1D091010;TF1D091010;c:\windows\system32\drivers\TF1D091010.sys [2.2.2008 1:37 99968]
S3 w300mgmt;Sony Ericsson W300 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\w300mgmt.sys [28.8.2008 16:33 87824]
S3 w300obex;Sony Ericsson W300 USB WMC OBEX Interface;c:\windows\system32\drivers\w300obex.sys [28.8.2008 16:00 85696]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [30.4.2010 17:40 717296]
S4 VideoAcceleratorService;VideoAcceleratorService;c:\progra~1\SpeedBit Video Accelerator\VideoAcceleratorService.exe -start -scm --> c:\progra~1\SpeedBit Video Accelerator\VideoAcceleratorService.exe -start -scm [?]
.
Contents of the 'Scheduled Tasks' folder

2010-07-26 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]

2010-08-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-18 22:39]

2010-08-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-18 22:39]
.
.
------- Supplementary Scan -------
.
IE: Download with Star Downloader - c:\progra~1\Star Downloader\sdie.htm
IE: E&xportovať do programu Microsoft Excel - d:\office2000\Office12\EXCEL.EXE/3000
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-08-02 09:03
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_USERS\S-1-5-21-299502267-343818398-725345543-1004\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:42,7f,ba,a6,f8,17,d2,63,1a,41,3a,d1,b7,67,ca,76,0e,96,90,9f,c7,ad,4f,
ba,70,00,fa,02,5d,b7,67,d6,f1,5b,d1,09,69,ef,b2,da,21,92,58,a7,c8,66,6b,ab,\
"??"=hex:15,dd,9b,4d,e8,b1,77,f7,6e,d3,38,80,b1,b4,dd,f8

[HKEY_USERS\S-1-5-21-299502267-343818398-725345543-1004\Software\SecuROM\License information*]
"datasecu"=hex:02,e7,d9,09,27,8b,a1,53,9e,4f,d6,09,95,7f,a3,1a,ac,2d,13,b6,83,
26,8e,2b,0b,c0,fb,04,ad,17,66,1d,f3,ae,06,03,4f,30,79,9e,4e,83,43,60,11,ba,\
"rkeysecu"=hex:de,36,ca,26,f8,43,cd,dc,d8,d9,ac,9e,b4,22,75,95
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(1220)
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'explorer.exe'(2364)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\program files\Microsoft Private Folder 1.0\ShellExt.dll
c:\windows\system32\PFLib.dll
c:\program files\Common Files\SmartCom\DragnDropCopyHook.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\windows\system32\acs.exe
c:\program files\Java\jre6\bin\jqs.exe
d:\hry\Medal of Honor - AirBone\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe
c:\program files\Microsoft Private Folder 1.0\PrfldSvc.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
c:\windows\RTHDCPL.EXE
c:\windows\system32\rundll32.exe
c:\windows\AGRSMMSG.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
.
**************************************************************************
.
Completion time: 2010-08-02 09:14:40 - machine was rebooted
ComboFix-quarantined-files.txt 2010-08-02 07:14
ComboFix2.txt 2010-08-01 19:57

Pre-Run: 50 538 622 976 bytes free
Post-Run: 18 adresárov, 50 407 133 184 voľných bajtov

- - End Of File - - FF0746C55736EB190CF2DAA7B0DB3D07

Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod bledulka » 02 srp 2010 10:02

Jak to ted vypadá s počítačem?

ROCK4891
Level 2.5
Level 2.5
Příspěvky: 307
Registrován: červenec 10
Pohlaví: Muž
Stav:
Offline

Re: Hijack this - prosím o kontrolu

Příspěvekod ROCK4891 » 02 srp 2010 12:28

nevšimol som si ze ci seka hudbu ale asi nie..
ale ked som nainstaloval NFS - Most Wanted ---tak mi to seka dost velmi..a pred tim mi to nesekalo
a zapína sa strasne pomali a to nehovorim ked ho restartujem...


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Majestic-12 [Bot] a 7 hostů