Myslím, že sem vše pochopil a provedl správně, takže přilkládám jednotlivé výpisy:
VirusTotal:
AhnLab-V3 2007.3.24.0 03.23.2007 no virus found
AntiVir 7.3.1.44 03.23.2007 no virus found
Authentium 4.93.8 03.23.2007 no virus found
Avast 4.7.936.0 03.23.2007 no virus found
AVG 7.5.0.447 03.23.2007 no virus found
BitDefender 7.2 03.23.2007 no virus found
CAT-QuickHeal 9.00 03.23.2007 no virus found
ClamAV devel-20070312 03.23.2007 no virus found
DrWeb 4.33 03.23.2007 no virus found
eSafe 7.0.14.0 03.22.2007 no virus found
eTrust-Vet 30.6.3504 03.23.2007 no virus found
Ewido 4.0 03.23.2007 no virus found
FileAdvisor 1 03.23.2007 No threat detected
Fortinet 2.85.0.0 03.23.2007 no virus found
F-Prot 4.3.1.45 03.23.2007 no virus found
F-Secure 6.70.13030.0 03.23.2007 no virus found
Ikarus T3.1.1.3 03.23.2007 no virus found
Kaspersky 4.0.2.24 03.23.2007 no virus found
McAfee 4990 03.22.2007 no virus found
Microsoft 1.2306 03.23.2007 no virus found
NOD32v2 2140 03.23.2007 no virus found
Norman 5.80.02 03.23.2007 no virus found
Panda 9.0.0.4 03.22.2007 no virus found
Prevx1 V2 03.23.2007 no virus found
Sophos 4.15.0 03.23.2007 no virus found
Sunbelt 2.2.907.0 03.22.2007 no virus found
Symantec 10 03.23.2007 no virus found
TheHacker 6.1.6.080 03.23.2007 no virus found
UNA 1.83 03.16.2007 no virus found
VBA32 3.11.2 03.22.2007 no virus found
VirusBuster 4.3.7:9 03.23.2007 no virus found
Webwasher-Gateway 6.0.1 03.23.2007 no virus found
ComboFix:
"Standa" - 07-03-23 19:26:22 Service Pack 2
ComboFix 07-03-22.2 - Running from: "D:\Denisa\Programy"
((((((((((((((((((((((((((((((( Files Created from 2007-02-23 to 2007-03-23 ))))))))))))))))))))))))))))))))))
2007-03-23 19:11 <DIR> d-------- C:\avenger
2007-03-21 12:48 8,704 --a------ C:\WINDOWS\system32\sporder.dll
2007-03-16 12:13 <DIR> d-------- C:\Program Files\DVD Shrink
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-03-22 20:26 -------- d-------- C:\Program Files\icqtoolbar
2007-03-22 20:26 -------- d-------- C:\Program Files\icqtoolbar
2007-03-22 00:51 -------- d-------- C:\Program Files\icqlite
2007-03-22 00:51 -------- d-------- C:\Program Files\icqlite
2007-03-21 21:12 -------- d-------- C:\Program Files\trackmania nations eswc special edition
2007-03-21 21:12 -------- d-------- C:\Program Files\trackmania nations eswc special edition
2007-02-21 14:33 70106 --a------ C:\WINDOWS\system32\perfc005.dat
2007-02-21 14:33 393192 --a------ C:\WINDOWS\system32\perfh005.dat
2007-02-05 21:02 -------- d-------- C:\Program Files\bsplayer pro
2007-02-05 21:02 -------- d-------- C:\Program Files\bsplayer pro
2007-02-03 14:21 -------- d-------- C:\Program Files\opera
2007-02-03 14:21 -------- d-------- C:\Program Files\opera
2007-02-02 22:28 -------- d-------- C:\Program Files\yahoo!
2007-02-02 22:28 -------- d-------- C:\Program Files\yahoo!
2007-02-02 21:37 -------- d--h----- C:\Program Files\installshield installation information
2007-02-02 21:37 -------- d--h----- C:\Program Files\installshield installation information
2007-02-02 21:31 -------- d-------- C:\Program Files\qip
2007-02-02 21:31 -------- d-------- C:\Program Files\qip
2007-02-02 20:57 -------- d-------- C:\Program Files\google
2007-02-02 20:57 -------- d-------- C:\Program Files\google
2007-02-02 19:45 0 --a------ C:\WINDOWS\sjoblist.dat
2007-02-02 19:45 0 --a------ C:\WINDOWS\joblist.dat
2007-02-02 19:37 -------- d-------- C:\Program Files\pinnacle
2007-02-02 19:37 -------- d-------- C:\Program Files\pinnacle
2007-02-02 19:15 -------- d-------- C:\Program Files\samsung
2007-02-02 19:15 -------- d-------- C:\Program Files\samsung
2007-02-02 18:40 -------- d-------- C:\Program Files\skype
2007-02-02 18:40 -------- d-------- C:\Program Files\skype
2007-02-02 18:40 -------- d-------- C:\Program Files\Common Files\skype
2007-02-01 19:08 -------- d-------- C:\Program Files\zoner
2007-02-01 19:08 -------- d-------- C:\Program Files\zoner
2007-01-31 19:24 -------- d-------- C:\Program Files\Common Files\speechengines
2007-01-31 19:24 -------- d-------- C:\Program Files\Common Files\odbc
2007-01-31 19:23 86016 --a------ C:\WINDOWS\system32\openal32.dll
2007-01-31 19:23 262144 --a------ C:\WINDOWS\system32\wrap_oal.dll
2007-01-31 19:20 -------- d-------- C:\Program Files\futuremark
2007-01-31 19:20 -------- d-------- C:\Program Files\futuremark
2007-01-31 19:08 -------- d-------- C:\Program Files\microsoft works
2007-01-31 19:08 -------- d-------- C:\Program Files\microsoft works
2007-01-31 19:07 -------- d-------- C:\Program Files\microsoft.net
2007-01-31 19:07 -------- d-------- C:\Program Files\microsoft.net
2007-01-31 19:00 -------- d-------- C:\Program Files\winamp
2007-01-31 19:00 -------- d-------- C:\Program Files\winamp
2007-01-31 18:58 502368 --a------ C:\WINDOWS\system32\drivers\amon.sys
2007-01-31 18:58 274432 --a------ C:\WINDOWS\system32\imon.dll
2007-01-31 18:58 -------- d-------- C:\Program Files\quicktime
2007-01-31 18:58 -------- d-------- C:\Program Files\quicktime
2007-01-31 18:57 -------- d-------- C:\Program Files\Common Files\ahead
2007-01-31 18:57 -------- d-------- C:\Program Files\ahead
2007-01-31 18:57 -------- d-------- C:\Program Files\ahead
2007-01-31 18:55 10368 --a------ C:\WINDOWS\system32\drivers\pfc.sys
2007-01-31 18:55 -------- d-------- C:\Program Files\cyberlink
2007-01-31 18:55 -------- d-------- C:\Program Files\cyberlink
2007-01-31 18:55 -------- d-------- C:\Program Files\Common Files\installshield
2007-01-31 18:50 737280 --a------ C:\WINDOWS\iun6002.exe
2007-01-31 18:50 -------- d-------- C:\Program Files\codec pack - all in 1
2007-01-31 18:50 -------- d-------- C:\Program Files\codec pack - all in 1
2007-01-31 18:38 -------- d-------- C:\Program Files\realtek
2007-01-31 18:38 -------- d-------- C:\Program Files\realtek
2007-01-31 18:37 -------- d-------- C:\Program Files\intel
2007-01-31 18:37 -------- d-------- C:\Program Files\intel
2007-01-31 18:32 -------- d-------- C:\Program Files\microsoft frontpage
2007-01-31 18:32 -------- d-------- C:\Program Files\microsoft frontpage
2007-01-31 18:31 0 -rahs---- C:\MSDOS.SYS
2007-01-31 18:31 0 -rahs---- C:\IO.SYS
2007-01-31 18:31 0 --a------ C:\CONFIG.SYS
2007-01-31 18:31 0 --a------ C:\AUTOEXEC.BAT
2007-01-31 18:30 -------- d--h----- C:\Program Files\windowsupdate
2007-01-31 18:30 -------- d--h----- C:\Program Files\windowsupdate
2007-01-31 18:30 -------- d-------- C:\Program Files\online services
2007-01-31 18:30 -------- d-------- C:\Program Files\online services
2007-01-31 18:29 21812 --a------ C:\WINDOWS\system32\emptyregdb.dat
2007-01-31 18:29 -------- d-------- C:\Program Files\movie maker
2007-01-31 18:29 -------- d-------- C:\Program Files\movie maker
2007-01-31 18:29 -------- d-------- C:\Program Files\Common Files\mssoap
2007-01-31 18:28 -------- d-------- C:\Program Files\windows nt
2007-01-31 18:28 -------- d-------- C:\Program Files\windows nt
2007-01-31 18:28 -------- d-------- C:\Program Files\msn gaming zone
2007-01-31 18:28 -------- d-------- C:\Program Files\msn gaming zone
2007-01-01 06:56 545 --a------ C:\WINDOWS\uc.pif
2007-01-01 06:56 545 --a------ C:\WINDOWS\rar.pif
2007-01-01 06:56 545 --a------ C:\WINDOWS\pkzip.pif
2007-01-01 06:56 545 --a------ C:\WINDOWS\pkunzip.pif
2007-01-01 06:56 545 --a------ C:\WINDOWS\noclose.pif
2007-01-01 06:56 545 --a------ C:\WINDOWS\lha.pif
2007-01-01 06:56 545 --a------ C:\WINDOWS\arj.pif
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\1.2.908.8472\\GoogleToolbarNotifier.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"RTHDCPL"="RTHDCPL.EXE"
"Alcmtr"="ALCMTR.EXE"
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RunDLL32.exe NvMCTray.dll,NvTaskbarInit"
"RemoteControl"="\"C:\\Program Files\\CyberLink\\PowerDVD\\PDVDServ.exe\""
"LanguageShortcut"="\"C:\\Program Files\\CyberLink\\PowerDVD\\Language\\Language.exe\""
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"nod32kui"="\"C:\\Program Files\\Eset\\nod32kui.exe\" /WAITSERVICE"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"PinnacleDriverCheck"="C:\\WINDOWS\\system32\\PSDrvCheck.exe -CheckReg"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce]
"nlsf"=hex(2):63,6d,64,2e,65,78,65,20,2f,43,20,6d,6f,76,65,20,2f,59,20,22,25,\
53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,5c,73,79,73,73,\
65,74,75,62,2e,64,6c,6c,22,20,22,25,53,79,73,74,65,6d,52,6f,6f,74,25,5c,53,\
79,73,74,65,6d,33,32,5c,73,79,73,73,65,74,75,70,2e,64,6c,6c,22,00
"nlhr"=hex(2):52,75,6e,44,6c,6c,33,32,2e,65,78,65,20,25,53,79,73,74,65,6d,52,\
6f,6f,74,25,5c,53,79,73,74,65,6d,33,32,5c,41,64,76,50,61,63,6b,2e,44,6c,6c,\
2c,4c,61,75,6e,63,68,49,4e,46,53,65,63,74,69,6f,6e,20,25,53,79,73,74,65,6d,\
52,6f,6f,74,25,5c,69,6e,66,5c,6e,6c,69,74,65,2e,69,6e,66,2c,43,00
"tscuninstall"=hex(2):25,73,79,73,74,65,6d,72,6f,6f,74,25,5c,73,79,73,74,65,6d,\
33,32,5c,74,73,63,75,70,67,72,64,2e,65,78,65,00
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ Lite]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ICQLite"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\ICQLite\\ICQLite.exe\" -minimize"
"inimapping"="0"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Skype"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"inimapping"="0"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
********************************************************************
catchme 0.2 W2K/XP/Vista - userland rootkit detector by Gmer, 17 October 2006
http://www.gmer.net
scanning hidden processes ...
scanning hidden services ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
********************************************************************
Completion time: 07-03-23 19:27:17
C:\ComboFix2.txt ... 07-03-22 19:37