Ahoj, posímtě mám problém, Klávesnice mi přestala fungovat z ničeho nic teda pár tlačítek, ale není možný aby byla potopená, takže používám na ntb klávesnici na usb, ale když zapínám pc tak začne pípat, takže ho musím natvrdo vypnout a zapnout a při výběru typu spuštění musím alespon 3x zmáčknout na nějaké tlačítko co funguje na ntb klávesnici a až potém na usb klávesnici odenterovat (na ntb enter nejde) pak se vše spustí.. jenže někdy se spustí tak že začne hledat Wifi bod a tím zamrzne pc furt se načítá wifi a ntb nedovolí nic dělat a takhle třeba půl dne.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:38:43, on 31.8.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16448)
Boot mode: Safe mode with network support
Running processes:
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Woytman\Downloads\hijackthis (1).exe
C:\Windows\SysWOW64\DllHost.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [VideoWebCamera] "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DrvUpdater] C:\Users\Woytman\AppData\Roaming\DRPSu\DrvUpdater.exe /hide
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8690 bytes
Problém se startupem :) Vyřešeno
- autoprd
- Level 4.5
- Příspěvky: 1715
- Registrován: únor 09
- Bydliště: ▼▲☺U Pc ☺▼▲
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Problém se startupem :)
Ju a udělal jsem i CF zkusil sem zda to sežvejkne :))
ComboFix 12-08-30.05 - Woytman 31.08.2012 11:06:36.1.4 - x64 NETWORK
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3767.2996 [GMT 2:00]
Spuštěný z: c:\users\Woytman\Desktop\ComboFix.exe
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\users\Woytman\AppData\Roaming\Microsoft\~DFK1264b940.tmp
c:\users\Woytman\AppData\Roaming\Microsoft\1eaadjc.dll
c:\users\Woytman\AppData\Roaming\Microsoft\bass.dll
c:\users\Woytman\AppData\Roaming\Microsoft\kfgresk.dll
c:\users\Woytman\AppData\Roaming\Microsoft\mjcriu.dll
c:\users\Woytman\AppData\Roaming\Microsoft\peaadje.dll
c:\users\Woytman\AppData\Roaming\Microsoft\qwadjb.dll
c:\users\Woytman\AppData\Roaming\Microsoft\rsaadjd.dll
c:\windows\SysWow64\DEBUG.log
c:\windows\SysWow64\FlashPlayerInstaller.exe
c:\windows\SysWow64\tmp74A9.tmp
c:\windows\SysWow64\tmp74F8.tmp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-28 do 2012-08-31 )))))))))))))))))))))))))))))))
.
.
2012-08-31 09:12 . 2012-08-31 09:12 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-08-31 09:12 . 2012-08-31 09:12 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-30 17:19 . 2012-08-30 17:19 -------- d-----w- c:\program files (x86)\Weeny Free Password Recovery
2012-08-29 22:56 . 2012-08-31 00:58 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{65340BC8-BFD5-4649-9FE5-292D876B98D1}\offreg.dll
2012-08-29 22:46 . 2012-08-29 22:46 -------- d-----w- c:\program files (x86)\Easy Gif Maker
2012-08-17 05:07 . 2012-07-06 20:07 552960 ----a-w- c:\windows\system32\drivers\bthport.sys
2012-08-15 22:31 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{65340BC8-BFD5-4649-9FE5-292D876B98D1}\mpengine.dll
2012-08-15 16:10 . 2012-08-15 16:10 -------- d-----w- c:\users\Woytman\AppData\Local\ElevatedDiagnostics
2012-08-12 01:01 . 2012-08-12 01:01 -------- d-----w- c:\program files (x86)\Common Files\Intel Corporation
2012-08-10 15:24 . 2012-08-10 15:24 -------- d-----w- c:\program files (x86)\Electronic Arts
2012-08-09 12:42 . 1999-12-17 08:13 86016 ----a-w- c:\windows\unvise32.exe
2012-08-09 12:31 . 2012-08-09 12:31 -------- d-----w- c:\program files (x86)\Yontoo
2012-08-09 12:31 . 2012-08-09 12:53 -------- d-----w- c:\programdata\Tarma Installer
2012-08-09 12:31 . 2012-08-09 12:51 -------- d-----w- c:\program files (x86)\1ClickDownload
2012-08-07 17:38 . 2012-08-07 17:38 -------- d-sh--w- c:\programdata\DSS
2012-08-07 17:38 . 2012-08-07 17:38 -------- d-----w- c:\programdata\Codemasters
2012-08-07 14:42 . 2010-09-22 11:12 19087360 ----a-w- c:\windows\SysWow64\mkl_blueripple.dll
2012-08-07 14:42 . 2011-03-19 13:16 1417216 ----a-w- c:\windows\SysWow64\rapture3d_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 -------- d-----w- c:\program files (x86)\BRS
2012-08-07 14:42 . 2012-08-07 14:42 466456 ----a-w- c:\windows\system32\wrap_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 122904 ----a-w- c:\windows\system32\OpenAL32.dll
2012-08-07 14:42 . 2012-08-07 14:42 -------- d-----w- c:\program files (x86)\OpenAL
2012-08-07 14:42 . 2012-08-07 14:42 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2012-08-07 14:23 . 2012-08-07 14:23 -------- d-----w- c:\program files (x86)\Codemasters
2012-08-06 11:05 . 2012-08-06 11:36 -------- d-----w- c:\users\Woytman\AppData\Roaming\CENZURA HD
2012-08-06 11:05 . 2012-08-06 11:05 -------- d-----w- c:\program files (x86)\CENZURA HD
2012-08-04 20:21 . 2012-08-04 20:22 -------- d-----w- c:\users\Woytman\AppData\Local\Facebook
2012-08-02 11:41 . 2012-08-02 11:43 -------- d-----w- c:\users\Woytman\AppData\Roaming\TotalRecorder
2012-08-02 11:41 . 2010-10-14 08:05 122960 ----a-w- c:\windows\system32\drivers\TotRec8.sys
2012-08-02 11:41 . 2012-08-02 11:41 -------- d-----w- c:\program files (x86)\HighCriteria
2012-08-02 11:29 . 2012-08-02 11:30 -------- d-----w- c:\program files (x86)\MP3 My MP3 3.1
2012-08-01 14:26 . 2012-08-03 12:19 -------- d-----w- c:\users\Woytman\AppData\Roaming\dvdcss
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-17 05:04 . 2012-07-04 22:19 62134624 ----a-w- c:\windows\system32\MRT.exe
2012-08-14 22:24 . 2012-07-05 16:25 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-08-14 22:24 . 2012-07-05 16:25 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-07-27 07:50 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2012-07-27 07:50 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2012-07-22 16:50 . 2012-07-09 18:29 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2012-07-22 16:50 . 2012-07-08 14:27 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2012-07-18 09:40 . 2012-07-18 09:40 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll
2012-07-16 23:05 . 2012-07-16 23:05 274151 ----a-w- c:\windows\GIF to AVI SWF Converter Uninstaller.exe
2012-07-16 07:58 . 2012-07-08 14:27 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2012-07-09 20:33 . 2012-07-09 20:33 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2012-07-09 20:33 . 2012-07-09 20:33 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll
2012-07-09 20:33 . 2012-07-09 20:33 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll
2012-07-08 14:27 . 2012-07-08 14:27 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2012-07-06 21:43 . 2011-03-28 16:36 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-07-05 20:46 . 2012-07-05 20:46 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-07-04 22:06 . 2012-07-04 22:06 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2012-07-04 22:06 . 2012-07-04 22:06 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2012-07-04 22:06 . 2012-07-04 22:06 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2012-07-04 22:06 . 2012-07-04 22:06 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2012-07-04 22:06 . 2012-07-04 22:06 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2012-07-04 22:06 . 2012-07-04 22:06 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2012-07-04 22:06 . 2012-07-04 22:06 367104 ----a-w- c:\windows\SysWow64\html.iec
2012-07-04 22:06 . 2012-07-04 22:06 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2012-07-04 22:06 . 2012-07-04 22:06 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2012-07-04 22:06 . 2012-07-04 22:06 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2012-07-04 22:06 . 2012-07-04 22:06 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2012-07-04 22:06 . 2012-07-04 22:06 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2012-07-04 22:06 . 2012-07-04 22:06 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2012-07-04 22:06 . 2012-07-04 22:06 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2012-07-04 22:06 . 2012-07-04 22:06 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2012-07-04 22:06 . 2012-07-04 22:06 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2012-07-04 22:06 . 2012-07-04 22:06 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2012-07-04 22:06 . 2012-07-04 22:06 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2012-07-04 22:06 . 2012-07-04 22:06 89088 ----a-w- c:\windows\system32\ie4uinit.exe
2012-07-04 22:06 . 2012-07-04 22:06 85504 ----a-w- c:\windows\system32\iesetup.dll
2012-07-04 22:06 . 2012-07-04 22:06 82432 ----a-w- c:\windows\system32\icardie.dll
2012-07-04 22:06 . 2012-07-04 22:06 76800 ----a-w- c:\windows\system32\tdc.ocx
2012-07-04 22:06 . 2012-07-04 22:06 697344 ----a-w- c:\windows\system32\msfeeds.dll
2012-07-04 22:06 . 2012-07-04 22:06 65024 ----a-w- c:\windows\system32\pngfilt.dll
2012-07-04 22:06 . 2012-07-04 22:06 603648 ----a-w- c:\windows\system32\vbscript.dll
2012-07-04 22:06 . 2012-07-04 22:06 55296 ----a-w- c:\windows\system32\msfeedsbs.dll
2012-07-04 22:06 . 2012-07-04 22:06 534528 ----a-w- c:\windows\system32\ieapfltr.dll
2012-07-04 22:06 . 2012-07-04 22:06 49664 ----a-w- c:\windows\system32\imgutil.dll
2012-07-04 22:06 . 2012-07-04 22:06 48640 ----a-w- c:\windows\system32\mshtmler.dll
2012-07-04 22:06 . 2012-07-04 22:06 452608 ----a-w- c:\windows\system32\dxtmsft.dll
2012-07-04 22:06 . 2012-07-04 22:06 448512 ----a-w- c:\windows\system32\html.iec
2012-07-04 22:06 . 2012-07-04 22:06 403248 ----a-w- c:\windows\system32\iedkcs32.dll
2012-07-04 22:06 . 2012-07-04 22:06 39936 ----a-w- c:\windows\system32\iernonce.dll
2012-07-04 22:06 . 2012-07-04 22:06 3695416 ----a-w- c:\windows\system32\ieapfltr.dat
2012-07-04 22:06 . 2012-07-04 22:06 30720 ----a-w- c:\windows\system32\licmgr10.dll
2012-07-04 22:06 . 2012-07-04 22:06 282112 ----a-w- c:\windows\system32\dxtrans.dll
2012-07-04 22:06 . 2012-07-04 22:06 267776 ----a-w- c:\windows\system32\ieaksie.dll
2012-07-04 22:06 . 2012-07-04 22:06 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-07-04 22:06 . 2012-07-04 22:06 222208 ----a-w- c:\windows\system32\msls31.dll
2012-07-04 22:06 . 2012-07-04 22:06 197120 ----a-w- c:\windows\system32\msrating.dll
2012-07-04 22:06 . 2012-07-04 22:06 165888 ----a-w- c:\windows\system32\iexpress.exe
2012-07-04 22:06 . 2012-07-04 22:06 163840 ----a-w- c:\windows\system32\ieakui.dll
2012-07-04 22:06 . 2012-07-04 22:06 160256 ----a-w- c:\windows\system32\wextract.exe
2012-07-04 22:06 . 2012-07-04 22:06 160256 ----a-w- c:\windows\system32\ieakeng.dll
2012-07-04 22:06 . 2012-07-04 22:06 149504 ----a-w- c:\windows\system32\occache.dll
2012-07-04 22:06 . 2012-07-04 22:06 145920 ----a-w- c:\windows\system32\iepeers.dll
2012-07-04 22:06 . 2012-07-04 22:06 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2012-07-04 22:06 . 2012-07-04 22:06 12288 ----a-w- c:\windows\system32\mshta.exe
2012-07-04 22:06 . 2012-07-04 22:06 114176 ----a-w- c:\windows\system32\admparse.dll
2012-07-04 22:06 . 2012-07-04 22:06 111616 ----a-w- c:\windows\system32\iesysprep.dll
2012-07-04 22:06 . 2012-07-04 22:06 10752 ----a-w- c:\windows\system32\msfeedssync.exe
2012-07-04 22:06 . 2012-07-04 22:06 103936 ----a-w- c:\windows\system32\inseng.dll
2012-07-04 21:58 . 2012-07-04 21:58 163048 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10141.bin
2012-07-04 21:26 . 2012-07-04 21:26 6656 ----a-w- c:\windows\system32\bcmwlrc.dll
2012-07-03 16:21 . 2012-07-04 21:33 355856 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-07-03 16:21 . 2012-07-04 21:33 54072 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-07-03 16:21 . 2012-07-04 21:33 59728 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-07-03 16:21 . 2012-07-04 21:33 958400 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-07-03 16:21 . 2012-07-04 21:33 71064 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-07-03 16:21 . 2012-07-04 21:33 25232 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-07-03 16:21 . 2012-07-04 21:31 41224 ----a-w- c:\windows\avastSS.scr
2012-07-03 16:21 . 2012-07-04 21:31 227648 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-07-03 16:21 . 2012-07-04 21:33 285328 ----a-w- c:\windows\system32\aswBoot.exe
2012-06-21 08:37 . 2012-06-21 08:37 3166792 ------w- c:\windows\SysWow64\pbsvc.exe
2012-06-09 05:43 . 2012-07-11 18:12 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-06-06 06:06 . 2012-07-11 18:12 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 06:06 . 2012-07-11 18:12 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 06:02 . 2012-07-11 18:11 1133568 ----a-w- c:\windows\system32\cdosys.dll
2012-06-06 05:05 . 2012-07-11 18:12 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-06-06 05:05 . 2012-07-11 18:12 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-06-06 05:03 . 2012-07-11 18:11 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
2012-06-02 22:19 . 2012-07-04 21:25 38424 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-07-04 21:25 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:19 . 2012-07-04 21:25 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-07-04 21:25 44056 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-07-04 21:25 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:15 . 2012-07-04 21:25 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:15 . 2012-07-04 21:25 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 13:19 . 2012-07-04 21:25 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 13:15 . 2012-07-04 21:25 36864 ----a-w- c:\windows\system32\wuapp.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
"DrvUpdater"="c:\users\Woytman\AppData\Roaming\DRPSu\DrvUpdater.exe" [2011-04-28 192856]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-07-03 4273976]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-04-13 284696]
"VideoWebCamera"="c:\program files (x86)\VideoWebCamera\VideoWebCamera.exe" [2010-05-26 1545568]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2010-06-22 968272]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R1 aswSnx;aswSnx; [x]
R1 aswSP;aswSP; [x]
R2 aswFsBlk;aswFsBlk; [x]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-07-03 71064]
R2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe [2010-07-29 52896]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2010-06-22 321104]
R2 gupdate;Služba Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-07-04 136176]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;c:\program files (x86)\Hi-Rez Studios\HiPatchService.exe [2012-07-12 8704]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 Live Updater Service;Live Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2012-04-05 255376]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-11-26 2253120]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-07 160944]
R2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2009-11-02 13784]
R2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-14 250056]
R3 ASPI;Advanced SCSI Programming Interface Driver;c:\windows\System32\DRIVERS\ASPI32.sys [x]
R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys [2010-07-29 36000]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys [2010-07-29 295072]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys [2010-07-29 201376]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys [2010-07-29 51872]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys [2010-07-29 154272]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys [2010-07-29 270496]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-07-04 136176]
R3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-14 113120]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 20992]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TotRec8;Total Recorder WDM audio filter driver;c:\windows\system32\drivers\TotRec8.sys [2010-10-14 122960]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 TurboBoost;TurboBoost;c:\program files\Intel\TurboBoost\TurboBoost.exe [2009-11-02 126352]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2012-07-05 1255736]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2011-11-26 28992]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-07-05 283200]
S1 VWiFiFlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys [2010-07-29 28832]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2010-04-13 135560]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-30 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-05 22:24]
.
2012-08-29 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000Core.job
- c:\users\Woytman\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-04 20:21]
.
2012-08-30 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000UA.job
- c:\users\Woytman\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-04 20:21]
.
2012-08-31 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-07-04 21:33]
.
2012-08-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-07-04 21:33]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-07-03 16:21 133400 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-01-10 167704]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-01-10 392984]
"Persistence"="c:\windows\system32\igfxpers.exe" [2012-01-10 417560]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-06-22 10920552]
"AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2010-07-29 594080]
"AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2010-07-29 377504]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
TCP: DhcpNameServer = 82.100.3.1 62.240.162.158
FF - ProfilePath - c:\users\Woytman\AppData\Roaming\Mozilla\Firefox\Profiles\kz4bbz1y.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT30722 ... hSource=13
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... ource=2&q=
FF - user.js: extentions.y2layers.installId - 3971dea7-461e-4e23-97a4-c37c06736f1d
FF - user.js: extentions.y2layers.defaultEnableAppsList - bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube
FF - user.js: extensions.autoDisableScopes - 14
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{687578B9-7132-4A7A-80E4-30EE31099E03} - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
HKLM-Run-ETDWare - c:\program files (x86)\Elantech\ETDCtrl.exe
AddRemove-1ClickDownload - c:\program files (x86)\1ClickDownload\uninst.exe
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-08-31 11:14:13
ComboFix-quarantined-files.txt 2012-08-31 09:14
.
Před spuštěním: Volných bajtů: 159 315 316 736
Po spuštění: Volných bajtů: 159 156 822 016
.
- - End Of File - - 41073208135096CD24422E53F0CF75FA
ComboFix 12-08-30.05 - Woytman 31.08.2012 11:06:36.1.4 - x64 NETWORK
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3767.2996 [GMT 2:00]
Spuštěný z: c:\users\Woytman\Desktop\ComboFix.exe
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\users\Woytman\AppData\Roaming\Microsoft\~DFK1264b940.tmp
c:\users\Woytman\AppData\Roaming\Microsoft\1eaadjc.dll
c:\users\Woytman\AppData\Roaming\Microsoft\bass.dll
c:\users\Woytman\AppData\Roaming\Microsoft\kfgresk.dll
c:\users\Woytman\AppData\Roaming\Microsoft\mjcriu.dll
c:\users\Woytman\AppData\Roaming\Microsoft\peaadje.dll
c:\users\Woytman\AppData\Roaming\Microsoft\qwadjb.dll
c:\users\Woytman\AppData\Roaming\Microsoft\rsaadjd.dll
c:\windows\SysWow64\DEBUG.log
c:\windows\SysWow64\FlashPlayerInstaller.exe
c:\windows\SysWow64\tmp74A9.tmp
c:\windows\SysWow64\tmp74F8.tmp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-28 do 2012-08-31 )))))))))))))))))))))))))))))))
.
.
2012-08-31 09:12 . 2012-08-31 09:12 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-08-31 09:12 . 2012-08-31 09:12 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-30 17:19 . 2012-08-30 17:19 -------- d-----w- c:\program files (x86)\Weeny Free Password Recovery
2012-08-29 22:56 . 2012-08-31 00:58 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{65340BC8-BFD5-4649-9FE5-292D876B98D1}\offreg.dll
2012-08-29 22:46 . 2012-08-29 22:46 -------- d-----w- c:\program files (x86)\Easy Gif Maker
2012-08-17 05:07 . 2012-07-06 20:07 552960 ----a-w- c:\windows\system32\drivers\bthport.sys
2012-08-15 22:31 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{65340BC8-BFD5-4649-9FE5-292D876B98D1}\mpengine.dll
2012-08-15 16:10 . 2012-08-15 16:10 -------- d-----w- c:\users\Woytman\AppData\Local\ElevatedDiagnostics
2012-08-12 01:01 . 2012-08-12 01:01 -------- d-----w- c:\program files (x86)\Common Files\Intel Corporation
2012-08-10 15:24 . 2012-08-10 15:24 -------- d-----w- c:\program files (x86)\Electronic Arts
2012-08-09 12:42 . 1999-12-17 08:13 86016 ----a-w- c:\windows\unvise32.exe
2012-08-09 12:31 . 2012-08-09 12:31 -------- d-----w- c:\program files (x86)\Yontoo
2012-08-09 12:31 . 2012-08-09 12:53 -------- d-----w- c:\programdata\Tarma Installer
2012-08-09 12:31 . 2012-08-09 12:51 -------- d-----w- c:\program files (x86)\1ClickDownload
2012-08-07 17:38 . 2012-08-07 17:38 -------- d-sh--w- c:\programdata\DSS
2012-08-07 17:38 . 2012-08-07 17:38 -------- d-----w- c:\programdata\Codemasters
2012-08-07 14:42 . 2010-09-22 11:12 19087360 ----a-w- c:\windows\SysWow64\mkl_blueripple.dll
2012-08-07 14:42 . 2011-03-19 13:16 1417216 ----a-w- c:\windows\SysWow64\rapture3d_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 -------- d-----w- c:\program files (x86)\BRS
2012-08-07 14:42 . 2012-08-07 14:42 466456 ----a-w- c:\windows\system32\wrap_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 122904 ----a-w- c:\windows\system32\OpenAL32.dll
2012-08-07 14:42 . 2012-08-07 14:42 -------- d-----w- c:\program files (x86)\OpenAL
2012-08-07 14:42 . 2012-08-07 14:42 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2012-08-07 14:23 . 2012-08-07 14:23 -------- d-----w- c:\program files (x86)\Codemasters
2012-08-06 11:05 . 2012-08-06 11:36 -------- d-----w- c:\users\Woytman\AppData\Roaming\CENZURA HD
2012-08-06 11:05 . 2012-08-06 11:05 -------- d-----w- c:\program files (x86)\CENZURA HD
2012-08-04 20:21 . 2012-08-04 20:22 -------- d-----w- c:\users\Woytman\AppData\Local\Facebook
2012-08-02 11:41 . 2012-08-02 11:43 -------- d-----w- c:\users\Woytman\AppData\Roaming\TotalRecorder
2012-08-02 11:41 . 2010-10-14 08:05 122960 ----a-w- c:\windows\system32\drivers\TotRec8.sys
2012-08-02 11:41 . 2012-08-02 11:41 -------- d-----w- c:\program files (x86)\HighCriteria
2012-08-02 11:29 . 2012-08-02 11:30 -------- d-----w- c:\program files (x86)\MP3 My MP3 3.1
2012-08-01 14:26 . 2012-08-03 12:19 -------- d-----w- c:\users\Woytman\AppData\Roaming\dvdcss
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-17 05:04 . 2012-07-04 22:19 62134624 ----a-w- c:\windows\system32\MRT.exe
2012-08-14 22:24 . 2012-07-05 16:25 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-08-14 22:24 . 2012-07-05 16:25 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-07-27 07:50 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2012-07-27 07:50 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2012-07-22 16:50 . 2012-07-09 18:29 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2012-07-22 16:50 . 2012-07-08 14:27 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2012-07-18 09:40 . 2012-07-18 09:40 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll
2012-07-16 23:05 . 2012-07-16 23:05 274151 ----a-w- c:\windows\GIF to AVI SWF Converter Uninstaller.exe
2012-07-16 07:58 . 2012-07-08 14:27 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2012-07-09 20:33 . 2012-07-09 20:33 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2012-07-09 20:33 . 2012-07-09 20:33 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll
2012-07-09 20:33 . 2012-07-09 20:33 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll
2012-07-08 14:27 . 2012-07-08 14:27 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2012-07-06 21:43 . 2011-03-28 16:36 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-07-05 20:46 . 2012-07-05 20:46 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-07-04 22:06 . 2012-07-04 22:06 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2012-07-04 22:06 . 2012-07-04 22:06 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2012-07-04 22:06 . 2012-07-04 22:06 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2012-07-04 22:06 . 2012-07-04 22:06 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2012-07-04 22:06 . 2012-07-04 22:06 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2012-07-04 22:06 . 2012-07-04 22:06 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2012-07-04 22:06 . 2012-07-04 22:06 367104 ----a-w- c:\windows\SysWow64\html.iec
2012-07-04 22:06 . 2012-07-04 22:06 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2012-07-04 22:06 . 2012-07-04 22:06 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2012-07-04 22:06 . 2012-07-04 22:06 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2012-07-04 22:06 . 2012-07-04 22:06 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2012-07-04 22:06 . 2012-07-04 22:06 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2012-07-04 22:06 . 2012-07-04 22:06 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2012-07-04 22:06 . 2012-07-04 22:06 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2012-07-04 22:06 . 2012-07-04 22:06 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2012-07-04 22:06 . 2012-07-04 22:06 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2012-07-04 22:06 . 2012-07-04 22:06 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2012-07-04 22:06 . 2012-07-04 22:06 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2012-07-04 22:06 . 2012-07-04 22:06 89088 ----a-w- c:\windows\system32\ie4uinit.exe
2012-07-04 22:06 . 2012-07-04 22:06 85504 ----a-w- c:\windows\system32\iesetup.dll
2012-07-04 22:06 . 2012-07-04 22:06 82432 ----a-w- c:\windows\system32\icardie.dll
2012-07-04 22:06 . 2012-07-04 22:06 76800 ----a-w- c:\windows\system32\tdc.ocx
2012-07-04 22:06 . 2012-07-04 22:06 697344 ----a-w- c:\windows\system32\msfeeds.dll
2012-07-04 22:06 . 2012-07-04 22:06 65024 ----a-w- c:\windows\system32\pngfilt.dll
2012-07-04 22:06 . 2012-07-04 22:06 603648 ----a-w- c:\windows\system32\vbscript.dll
2012-07-04 22:06 . 2012-07-04 22:06 55296 ----a-w- c:\windows\system32\msfeedsbs.dll
2012-07-04 22:06 . 2012-07-04 22:06 534528 ----a-w- c:\windows\system32\ieapfltr.dll
2012-07-04 22:06 . 2012-07-04 22:06 49664 ----a-w- c:\windows\system32\imgutil.dll
2012-07-04 22:06 . 2012-07-04 22:06 48640 ----a-w- c:\windows\system32\mshtmler.dll
2012-07-04 22:06 . 2012-07-04 22:06 452608 ----a-w- c:\windows\system32\dxtmsft.dll
2012-07-04 22:06 . 2012-07-04 22:06 448512 ----a-w- c:\windows\system32\html.iec
2012-07-04 22:06 . 2012-07-04 22:06 403248 ----a-w- c:\windows\system32\iedkcs32.dll
2012-07-04 22:06 . 2012-07-04 22:06 39936 ----a-w- c:\windows\system32\iernonce.dll
2012-07-04 22:06 . 2012-07-04 22:06 3695416 ----a-w- c:\windows\system32\ieapfltr.dat
2012-07-04 22:06 . 2012-07-04 22:06 30720 ----a-w- c:\windows\system32\licmgr10.dll
2012-07-04 22:06 . 2012-07-04 22:06 282112 ----a-w- c:\windows\system32\dxtrans.dll
2012-07-04 22:06 . 2012-07-04 22:06 267776 ----a-w- c:\windows\system32\ieaksie.dll
2012-07-04 22:06 . 2012-07-04 22:06 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-07-04 22:06 . 2012-07-04 22:06 222208 ----a-w- c:\windows\system32\msls31.dll
2012-07-04 22:06 . 2012-07-04 22:06 197120 ----a-w- c:\windows\system32\msrating.dll
2012-07-04 22:06 . 2012-07-04 22:06 165888 ----a-w- c:\windows\system32\iexpress.exe
2012-07-04 22:06 . 2012-07-04 22:06 163840 ----a-w- c:\windows\system32\ieakui.dll
2012-07-04 22:06 . 2012-07-04 22:06 160256 ----a-w- c:\windows\system32\wextract.exe
2012-07-04 22:06 . 2012-07-04 22:06 160256 ----a-w- c:\windows\system32\ieakeng.dll
2012-07-04 22:06 . 2012-07-04 22:06 149504 ----a-w- c:\windows\system32\occache.dll
2012-07-04 22:06 . 2012-07-04 22:06 145920 ----a-w- c:\windows\system32\iepeers.dll
2012-07-04 22:06 . 2012-07-04 22:06 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2012-07-04 22:06 . 2012-07-04 22:06 12288 ----a-w- c:\windows\system32\mshta.exe
2012-07-04 22:06 . 2012-07-04 22:06 114176 ----a-w- c:\windows\system32\admparse.dll
2012-07-04 22:06 . 2012-07-04 22:06 111616 ----a-w- c:\windows\system32\iesysprep.dll
2012-07-04 22:06 . 2012-07-04 22:06 10752 ----a-w- c:\windows\system32\msfeedssync.exe
2012-07-04 22:06 . 2012-07-04 22:06 103936 ----a-w- c:\windows\system32\inseng.dll
2012-07-04 21:58 . 2012-07-04 21:58 163048 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10141.bin
2012-07-04 21:26 . 2012-07-04 21:26 6656 ----a-w- c:\windows\system32\bcmwlrc.dll
2012-07-03 16:21 . 2012-07-04 21:33 355856 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-07-03 16:21 . 2012-07-04 21:33 54072 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-07-03 16:21 . 2012-07-04 21:33 59728 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-07-03 16:21 . 2012-07-04 21:33 958400 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-07-03 16:21 . 2012-07-04 21:33 71064 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-07-03 16:21 . 2012-07-04 21:33 25232 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-07-03 16:21 . 2012-07-04 21:31 41224 ----a-w- c:\windows\avastSS.scr
2012-07-03 16:21 . 2012-07-04 21:31 227648 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-07-03 16:21 . 2012-07-04 21:33 285328 ----a-w- c:\windows\system32\aswBoot.exe
2012-06-21 08:37 . 2012-06-21 08:37 3166792 ------w- c:\windows\SysWow64\pbsvc.exe
2012-06-09 05:43 . 2012-07-11 18:12 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-06-06 06:06 . 2012-07-11 18:12 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 06:06 . 2012-07-11 18:12 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 06:02 . 2012-07-11 18:11 1133568 ----a-w- c:\windows\system32\cdosys.dll
2012-06-06 05:05 . 2012-07-11 18:12 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-06-06 05:05 . 2012-07-11 18:12 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-06-06 05:03 . 2012-07-11 18:11 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
2012-06-02 22:19 . 2012-07-04 21:25 38424 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-07-04 21:25 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:19 . 2012-07-04 21:25 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-07-04 21:25 44056 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-07-04 21:25 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:15 . 2012-07-04 21:25 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:15 . 2012-07-04 21:25 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 13:19 . 2012-07-04 21:25 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 13:15 . 2012-07-04 21:25 36864 ----a-w- c:\windows\system32\wuapp.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
"DrvUpdater"="c:\users\Woytman\AppData\Roaming\DRPSu\DrvUpdater.exe" [2011-04-28 192856]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-07-03 4273976]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-04-13 284696]
"VideoWebCamera"="c:\program files (x86)\VideoWebCamera\VideoWebCamera.exe" [2010-05-26 1545568]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2010-06-22 968272]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R1 aswSnx;aswSnx; [x]
R1 aswSP;aswSP; [x]
R2 aswFsBlk;aswFsBlk; [x]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-07-03 71064]
R2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe [2010-07-29 52896]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2010-06-22 321104]
R2 gupdate;Služba Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-07-04 136176]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;c:\program files (x86)\Hi-Rez Studios\HiPatchService.exe [2012-07-12 8704]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 Live Updater Service;Live Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2012-04-05 255376]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-11-26 2253120]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-07 160944]
R2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2009-11-02 13784]
R2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-14 250056]
R3 ASPI;Advanced SCSI Programming Interface Driver;c:\windows\System32\DRIVERS\ASPI32.sys [x]
R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys [2010-07-29 36000]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys [2010-07-29 295072]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys [2010-07-29 201376]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys [2010-07-29 51872]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys [2010-07-29 154272]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys [2010-07-29 270496]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-07-04 136176]
R3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-14 113120]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 20992]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TotRec8;Total Recorder WDM audio filter driver;c:\windows\system32\drivers\TotRec8.sys [2010-10-14 122960]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 TurboBoost;TurboBoost;c:\program files\Intel\TurboBoost\TurboBoost.exe [2009-11-02 126352]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2012-07-05 1255736]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2011-11-26 28992]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-07-05 283200]
S1 VWiFiFlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys [2010-07-29 28832]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2010-04-13 135560]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-30 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-05 22:24]
.
2012-08-29 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000Core.job
- c:\users\Woytman\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-04 20:21]
.
2012-08-30 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000UA.job
- c:\users\Woytman\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-04 20:21]
.
2012-08-31 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-07-04 21:33]
.
2012-08-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-07-04 21:33]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-07-03 16:21 133400 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-01-10 167704]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-01-10 392984]
"Persistence"="c:\windows\system32\igfxpers.exe" [2012-01-10 417560]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-06-22 10920552]
"AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2010-07-29 594080]
"AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2010-07-29 377504]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
TCP: DhcpNameServer = 82.100.3.1 62.240.162.158
FF - ProfilePath - c:\users\Woytman\AppData\Roaming\Mozilla\Firefox\Profiles\kz4bbz1y.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT30722 ... hSource=13
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... ource=2&q=
FF - user.js: extentions.y2layers.installId - 3971dea7-461e-4e23-97a4-c37c06736f1d
FF - user.js: extentions.y2layers.defaultEnableAppsList - bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube
FF - user.js: extensions.autoDisableScopes - 14
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{687578B9-7132-4A7A-80E4-30EE31099E03} - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
HKLM-Run-ETDWare - c:\program files (x86)\Elantech\ETDCtrl.exe
AddRemove-1ClickDownload - c:\program files (x86)\1ClickDownload\uninst.exe
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-08-31 11:14:13
ComboFix-quarantined-files.txt 2012-08-31 09:14
.
Před spuštěním: Volných bajtů: 159 315 316 736
Po spuštění: Volných bajtů: 159 156 822 016
.
- - End Of File - - 41073208135096CD24422E53F0CF75FA
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Problém se startupem :)
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Zkopíruj do něj následující celý text označený zeleně:
Kód: Vybrat vše
ClearJavaCache::
KillAll::
File::
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Skype\Updater\Updater.exe
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000Core.job
c:\users\Woytman\AppData\Local\Facebook\Update\FacebookUpdate.exe
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000UA.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
Folder::
c:\program files (x86)\Google\Update
c:\program files (x86)\Skype\Updater
c:\users\Woytman\AppData\Local\Facebook\Update
Driver::
gupdate
SkypeUpdate
gupdatem
Firefox::
FF - ProfilePath - c:\users\Woytman\AppData\Roaming\Mozilla\Firefox\Profiles\kz4bbz1y.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT30722 ... hSource=13
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... ource=2&q=
FF - user.js: extensions.autoDisableScopes - 14
RegNull::
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
RegLock::
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
- autoprd
- Level 4.5
- Příspěvky: 1715
- Registrován: únor 09
- Bydliště: ▼▲☺U Pc ☺▼▲
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Problém se startupem :)
ComboFix 12-08-30.05 - Woytman 01.09.2012 15:21:53.2.4 - x64 NETWORK
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3767.3002 [GMT 2:00]
Spuštěný z: c:\users\Woytman\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Woytman\Desktop\CFScript.txt
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\program files (x86)\Google\Update\GoogleUpdate.exe"
"c:\program files (x86)\Skype\Updater\Updater.exe"
"c:\users\Woytman\AppData\Local\Facebook\Update\FacebookUpdate.exe"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000Core.job"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000UA.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Google\Update
c:\program files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler64.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdate.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateBroker.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateHelper.msi
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateOnDemand.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\1.3.21.115\goopdate.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_am.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ar.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_bg.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_bn.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ca.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_cs.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_da.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_de.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_el.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_en-GB.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_en.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_es-419.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_es.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_et.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fa.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fi.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fil.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_gu.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_hi.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_hr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_hu.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_id.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_is.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_it.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_iw.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ja.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_kn.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ko.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_lt.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_lv.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ml.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_mr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ms.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_nl.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_no.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_pl.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_pt-BR.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_pt-PT.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ro.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ru.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sk.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sl.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sv.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sw.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ta.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_te.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_th.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_tr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_uk.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ur.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_vi.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_zh-CN.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_zh-TW.dll
c:\program files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
c:\program files (x86)\Google\Update\1.3.21.115\psmachine.dll
c:\program files (x86)\Google\Update\1.3.21.115\psuser.dll
c:\program files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.115\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\21.0.1180.83\21.0.1180.83_21.0.1180.79_chrome_updater.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\users\Woytman\AppData\Local\Facebook\Update
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\FacebookCrashHandler.exe
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdate.exe
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdateHelper.msi
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ar.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bg.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bn.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ca.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_cs.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_da.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_de.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_el.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en-GB.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es-419.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_et.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fa.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fi.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fil.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_gu.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hi.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hu.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_id.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_is.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_it.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_iw.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ja.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_kn.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ko.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lt.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lv.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ml.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_mr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ms.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_nl.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_no.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_or.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pl.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-BR.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-PT.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ro.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ru.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sk.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sl.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sv.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ta.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_te.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_th.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_tr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_uk.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ur.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_vi.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-CN.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-TW.dll
c:\users\Woytman\AppData\Local\Facebook\Update\FacebookUpdate.exe
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000Core.job
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000UA.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-08-01 do 2012-09-01 )))))))))))))))))))))))))))))))
.
.
2012-09-01 13:28 . 2012-09-01 13:28 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-09-01 13:28 . 2012-09-01 13:28 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-09-01 12:58 . 2012-09-01 12:58 -------- d-----w- c:\windows\Sun
2012-09-01 11:23 . 2012-09-01 11:23 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{88BB0521-FF83-47DB-BF4C-A834757B11D2}\offreg.dll
2012-08-31 14:30 . 2012-08-27 23:49 9310152 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{88BB0521-FF83-47DB-BF4C-A834757B11D2}\mpengine.dll
2012-08-30 17:19 . 2012-08-30 17:19 -------- d-----w- c:\program files (x86)\Weeny Free Password Recovery
2012-08-29 22:46 . 2012-08-29 22:46 -------- d-----w- c:\program files (x86)\Easy Gif Maker
2012-08-17 05:07 . 2012-07-06 20:07 552960 ----a-w- c:\windows\system32\drivers\bthport.sys
2012-08-15 22:30 . 2012-05-05 08:36 503808 ----a-w- c:\windows\system32\srcore.dll
2012-08-15 22:30 . 2012-05-05 07:46 43008 ----a-w- c:\windows\SysWow64\srclient.dll
2012-08-15 22:30 . 2012-02-11 06:43 751104 ----a-w- c:\windows\system32\win32spl.dll
2012-08-15 22:30 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2012-08-15 22:30 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2012-08-15 22:30 . 2012-02-11 05:43 492032 ----a-w- c:\windows\SysWow64\win32spl.dll
2012-08-15 22:30 . 2012-07-04 22:16 73216 ----a-w- c:\windows\system32\netapi32.dll
2012-08-15 22:30 . 2012-07-04 22:13 59392 ----a-w- c:\windows\system32\browcli.dll
2012-08-15 22:30 . 2012-07-04 22:13 136704 ----a-w- c:\windows\system32\browser.dll
2012-08-15 22:30 . 2012-07-04 21:14 41984 ----a-w- c:\windows\SysWow64\browcli.dll
2012-08-15 22:30 . 2012-07-18 18:15 3148800 ----a-w- c:\windows\system32\win32k.sys
2012-08-15 22:30 . 2012-05-14 05:26 956928 ----a-w- c:\windows\system32\localspl.dll
2012-08-15 16:10 . 2012-08-31 09:36 -------- d-----w- c:\users\Woytman\AppData\Local\ElevatedDiagnostics
2012-08-12 01:01 . 2012-08-12 01:01 -------- d-----w- c:\program files (x86)\Common Files\Intel Corporation
2012-08-10 15:24 . 2012-08-10 15:24 -------- d-----w- c:\program files (x86)\Electronic Arts
2012-08-09 12:42 . 1999-12-17 08:13 86016 ----a-w- c:\windows\unvise32.exe
2012-08-09 12:31 . 2012-08-09 12:31 -------- d-----w- c:\program files (x86)\Yontoo
2012-08-09 12:31 . 2012-08-09 12:53 -------- d-----w- c:\programdata\Tarma Installer
2012-08-09 12:31 . 2012-08-09 12:51 -------- d-----w- c:\program files (x86)\1ClickDownload
2012-08-07 17:38 . 2012-08-07 17:38 -------- d-sh--w- c:\programdata\DSS
2012-08-07 17:38 . 2012-08-07 17:38 -------- d-----w- c:\programdata\Codemasters
2012-08-07 14:42 . 2010-09-22 11:12 19087360 ----a-w- c:\windows\SysWow64\mkl_blueripple.dll
2012-08-07 14:42 . 2011-03-19 13:16 1417216 ----a-w- c:\windows\SysWow64\rapture3d_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 -------- d-----w- c:\program files (x86)\BRS
2012-08-07 14:42 . 2012-08-07 14:42 466456 ----a-w- c:\windows\system32\wrap_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 122904 ----a-w- c:\windows\system32\OpenAL32.dll
2012-08-07 14:42 . 2012-08-07 14:42 -------- d-----w- c:\program files (x86)\OpenAL
2012-08-07 14:42 . 2012-08-07 14:42 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2012-08-07 14:23 . 2012-08-07 14:23 -------- d-----w- c:\program files (x86)\Codemasters
2012-08-06 11:05 . 2012-08-06 11:36 -------- d-----w- c:\users\Woytman\AppData\Roaming\CENZURA HD
2012-08-06 11:05 . 2012-08-06 11:05 -------- d-----w- c:\program files (x86)\CENZURA HD
2012-08-04 20:21 . 2012-08-04 20:22 -------- d-----w- c:\users\Woytman\AppData\Local\Facebook
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-17 05:04 . 2012-07-04 22:19 62134624 ----a-w- c:\windows\system32\MRT.exe
2012-08-14 22:24 . 2012-07-05 16:25 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-08-14 22:24 . 2012-07-05 16:25 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-07-27 07:50 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2012-07-27 07:50 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2012-07-22 16:50 . 2012-07-09 18:29 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2012-07-22 16:50 . 2012-07-08 14:27 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2012-07-18 09:40 . 2012-07-18 09:40 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll
2012-07-16 23:05 . 2012-07-16 23:05 274151 ----a-w- c:\windows\GIF to AVI SWF Converter Uninstaller.exe
2012-07-16 07:58 . 2012-07-08 14:27 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2012-07-09 20:33 . 2012-07-09 20:33 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2012-07-09 20:33 . 2012-07-09 20:33 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll
2012-07-09 20:33 . 2012-07-09 20:33 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll
2012-07-08 14:27 . 2012-07-08 14:27 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2012-07-06 21:43 . 2011-03-28 16:36 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-07-05 20:46 . 2012-07-05 20:46 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-07-04 22:06 . 2012-07-04 22:06 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2012-07-04 22:06 . 2012-07-04 22:06 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2012-07-04 22:06 . 2012-07-04 22:06 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2012-07-04 22:06 . 2012-07-04 22:06 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2012-07-04 22:06 . 2012-07-04 22:06 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2012-07-04 22:06 . 2012-07-04 22:06 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2012-07-04 22:06 . 2012-07-04 22:06 367104 ----a-w- c:\windows\SysWow64\html.iec
2012-07-04 22:06 . 2012-07-04 22:06 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2012-07-04 22:06 . 2012-07-04 22:06 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2012-07-04 22:06 . 2012-07-04 22:06 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2012-07-04 22:06 . 2012-07-04 22:06 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2012-07-04 22:06 . 2012-07-04 22:06 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2012-07-04 22:06 . 2012-07-04 22:06 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2012-07-04 22:06 . 2012-07-04 22:06 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2012-07-04 22:06 . 2012-07-04 22:06 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2012-07-04 22:06 . 2012-07-04 22:06 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2012-07-04 22:06 . 2012-07-04 22:06 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2012-07-04 22:06 . 2012-07-04 22:06 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2012-07-04 22:06 . 2012-07-04 22:06 89088 ----a-w- c:\windows\system32\ie4uinit.exe
2012-07-04 22:06 . 2012-07-04 22:06 85504 ----a-w- c:\windows\system32\iesetup.dll
2012-07-04 22:06 . 2012-07-04 22:06 82432 ----a-w- c:\windows\system32\icardie.dll
2012-07-04 22:06 . 2012-07-04 22:06 76800 ----a-w- c:\windows\system32\tdc.ocx
2012-07-04 22:06 . 2012-07-04 22:06 697344 ----a-w- c:\windows\system32\msfeeds.dll
2012-07-04 22:06 . 2012-07-04 22:06 65024 ----a-w- c:\windows\system32\pngfilt.dll
2012-07-04 22:06 . 2012-07-04 22:06 603648 ----a-w- c:\windows\system32\vbscript.dll
2012-07-04 22:06 . 2012-07-04 22:06 55296 ----a-w- c:\windows\system32\msfeedsbs.dll
2012-07-04 22:06 . 2012-07-04 22:06 534528 ----a-w- c:\windows\system32\ieapfltr.dll
2012-07-04 22:06 . 2012-07-04 22:06 49664 ----a-w- c:\windows\system32\imgutil.dll
2012-07-04 22:06 . 2012-07-04 22:06 48640 ----a-w- c:\windows\system32\mshtmler.dll
2012-07-04 22:06 . 2012-07-04 22:06 452608 ----a-w- c:\windows\system32\dxtmsft.dll
2012-07-04 22:06 . 2012-07-04 22:06 448512 ----a-w- c:\windows\system32\html.iec
2012-07-04 22:06 . 2012-07-04 22:06 403248 ----a-w- c:\windows\system32\iedkcs32.dll
2012-07-04 22:06 . 2012-07-04 22:06 39936 ----a-w- c:\windows\system32\iernonce.dll
2012-07-04 22:06 . 2012-07-04 22:06 3695416 ----a-w- c:\windows\system32\ieapfltr.dat
2012-07-04 22:06 . 2012-07-04 22:06 30720 ----a-w- c:\windows\system32\licmgr10.dll
2012-07-04 22:06 . 2012-07-04 22:06 282112 ----a-w- c:\windows\system32\dxtrans.dll
2012-07-04 22:06 . 2012-07-04 22:06 267776 ----a-w- c:\windows\system32\ieaksie.dll
2012-07-04 22:06 . 2012-07-04 22:06 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-07-04 22:06 . 2012-07-04 22:06 222208 ----a-w- c:\windows\system32\msls31.dll
2012-07-04 22:06 . 2012-07-04 22:06 197120 ----a-w- c:\windows\system32\msrating.dll
2012-07-04 22:06 . 2012-07-04 22:06 165888 ----a-w- c:\windows\system32\iexpress.exe
2012-07-04 22:06 . 2012-07-04 22:06 163840 ----a-w- c:\windows\system32\ieakui.dll
2012-07-04 22:06 . 2012-07-04 22:06 160256 ----a-w- c:\windows\system32\wextract.exe
2012-07-04 22:06 . 2012-07-04 22:06 160256 ----a-w- c:\windows\system32\ieakeng.dll
2012-07-04 22:06 . 2012-07-04 22:06 149504 ----a-w- c:\windows\system32\occache.dll
2012-07-04 22:06 . 2012-07-04 22:06 145920 ----a-w- c:\windows\system32\iepeers.dll
2012-07-04 22:06 . 2012-07-04 22:06 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2012-07-04 22:06 . 2012-07-04 22:06 12288 ----a-w- c:\windows\system32\mshta.exe
2012-07-04 22:06 . 2012-07-04 22:06 114176 ----a-w- c:\windows\system32\admparse.dll
2012-07-04 22:06 . 2012-07-04 22:06 111616 ----a-w- c:\windows\system32\iesysprep.dll
2012-07-04 22:06 . 2012-07-04 22:06 10752 ----a-w- c:\windows\system32\msfeedssync.exe
2012-07-04 22:06 . 2012-07-04 22:06 103936 ----a-w- c:\windows\system32\inseng.dll
2012-07-04 21:58 . 2012-07-04 21:58 163048 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10141.bin
2012-07-04 21:26 . 2012-07-04 21:26 6656 ----a-w- c:\windows\system32\bcmwlrc.dll
2012-07-03 16:21 . 2012-07-04 21:33 355856 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-07-03 16:21 . 2012-07-04 21:33 54072 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-07-03 16:21 . 2012-07-04 21:33 59728 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-07-03 16:21 . 2012-07-04 21:33 958400 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-07-03 16:21 . 2012-07-04 21:33 71064 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-07-03 16:21 . 2012-07-04 21:33 25232 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-07-03 16:21 . 2012-07-04 21:31 41224 ----a-w- c:\windows\avastSS.scr
2012-07-03 16:21 . 2012-07-04 21:31 227648 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-07-03 16:21 . 2012-07-04 21:33 285328 ----a-w- c:\windows\system32\aswBoot.exe
2012-06-21 08:37 . 2012-06-21 08:37 3166792 ------w- c:\windows\SysWow64\pbsvc.exe
2012-06-09 05:43 . 2012-07-11 18:12 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-06-06 06:06 . 2012-07-11 18:12 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 06:06 . 2012-07-11 18:12 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 06:02 . 2012-07-11 18:11 1133568 ----a-w- c:\windows\system32\cdosys.dll
2012-06-06 05:05 . 2012-07-11 18:12 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-06-06 05:05 . 2012-07-11 18:12 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-06-06 05:03 . 2012-07-11 18:11 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-08-31_09.12.39 )))))))))))))))))))))))))))))))))))))))))
.
- 2009-07-14 04:54 . 2012-08-31 08:15 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-09-01 13:30 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-08-31 08:15 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-09-01 13:30 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-08-31 08:15 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-09-01 13:30 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-07-05 06:18 . 2012-08-31 14:26 26228 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-08-31 14:26 30626 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 04:46 . 2012-09-01 10:28 88992 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2012-07-04 21:05 . 2012-08-31 14:26 4930 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-4017719214-3181596340-2209486444-1000_UserData.bin
+ 2012-09-01 13:29 . 2012-09-01 13:29 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-08-30 21:06 . 2012-08-31 08:18 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-09-01 13:29 . 2012-09-01 13:29 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-08-30 21:06 . 2012-08-31 08:18 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-07-05 06:18 . 2012-09-01 09:25 204360 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2012-07-05 10:23 . 2012-09-01 09:52 214076 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
- 2009-07-14 02:36 . 2012-08-31 08:22 651938 c:\windows\system32\perfh009.dat
+ 2009-07-14 02:36 . 2012-09-01 13:07 651938 c:\windows\system32\perfh009.dat
- 2009-07-26 18:41 . 2012-08-31 08:22 666194 c:\windows\system32\perfh005.dat
+ 2009-07-26 18:41 . 2012-09-01 13:07 666194 c:\windows\system32\perfh005.dat
+ 2009-07-14 02:36 . 2012-09-01 13:07 120870 c:\windows\system32\perfc009.dat
- 2009-07-14 02:36 . 2012-08-31 08:22 120870 c:\windows\system32\perfc009.dat
- 2009-07-26 18:41 . 2012-08-31 08:22 139890 c:\windows\system32\perfc005.dat
+ 2009-07-26 18:41 . 2012-09-01 13:07 139890 c:\windows\system32\perfc005.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
"DrvUpdater"="c:\users\Woytman\AppData\Roaming\DRPSu\DrvUpdater.exe" [2011-04-28 192856]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-07-03 4273976]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-04-13 284696]
"VideoWebCamera"="c:\program files (x86)\VideoWebCamera\VideoWebCamera.exe" [2010-05-26 1545568]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2010-06-22 968272]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-14 250056]
R3 ASPI;Advanced SCSI Programming Interface Driver;c:\windows\System32\DRIVERS\ASPI32.sys [x]
R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys [2010-07-29 36000]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys [2010-07-29 295072]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys [2010-07-29 201376]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys [2010-07-29 51872]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys [2010-07-29 154272]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys [2010-07-29 270496]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-14 113120]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 20992]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 TurboBoost;TurboBoost;c:\program files\Intel\TurboBoost\TurboBoost.exe [2009-11-02 126352]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2012-07-05 1255736]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2011-11-26 28992]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-07-05 283200]
S1 VWiFiFlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-07-03 71064]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe [2010-07-29 52896]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2010-06-22 321104]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
S2 Live Updater Service;Live Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2012-04-05 255376]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-11-26 2253120]
S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2009-11-02 13784]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys [2010-07-29 28832]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2010-04-13 135560]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
S3 TotRec8;Total Recorder WDM audio filter driver;c:\windows\system32\drivers\TotRec8.sys [2010-10-14 122960]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-09-01 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-05 22:24]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-07-03 16:21 133400 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-01-10 167704]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-01-10 392984]
"Persistence"="c:\windows\system32\igfxpers.exe" [2012-01-10 417560]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-06-22 10920552]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"ETDWare"="c:\program files (x86)\Elantech\ETDCtrl.exe" [BU]
"AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2010-07-29 594080]
"AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2010-07-29 377504]
"combofix"="c:\combofix\CF15725.3XE" [2010-11-20 345088]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
TCP: DhcpNameServer = 82.100.3.1 62.240.162.158
FF - ProfilePath - c:\users\Woytman\AppData\Roaming\Mozilla\Firefox\Profiles\kz4bbz1y.default\
FF - user.js: extentions.y2layers.installId - 3971dea7-461e-4e23-97a4-c37c06736f1d
FF - user.js: extentions.y2layers.defaultEnableAppsList - bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{687578B9-7132-4A7A-80E4-30EE31099E03} - (no file)
.
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Bonjour\mDNSResponder.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\windows\SysWOW64\PnkBstrA.exe
.
**************************************************************************
.
Celkový čas: 2012-09-01 15:35:01 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-09-01 13:35
ComboFix2.txt 2012-08-31 09:14
.
Před spuštěním: Volných bajtů: 157 331 685 376
Po spuštění: Volných bajtů: 156 851 535 872
.
- - End Of File - - 5B53B63A41A9B9E238C3CBD261788050
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3767.3002 [GMT 2:00]
Spuštěný z: c:\users\Woytman\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Woytman\Desktop\CFScript.txt
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\program files (x86)\Google\Update\GoogleUpdate.exe"
"c:\program files (x86)\Skype\Updater\Updater.exe"
"c:\users\Woytman\AppData\Local\Facebook\Update\FacebookUpdate.exe"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000Core.job"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000UA.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Google\Update
c:\program files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler64.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdate.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateBroker.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateHelper.msi
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateOnDemand.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\1.3.21.115\goopdate.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_am.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ar.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_bg.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_bn.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ca.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_cs.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_da.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_de.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_el.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_en-GB.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_en.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_es-419.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_es.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_et.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fa.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fi.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fil.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_gu.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_hi.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_hr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_hu.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_id.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_is.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_it.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_iw.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ja.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_kn.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ko.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_lt.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_lv.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ml.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_mr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ms.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_nl.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_no.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_pl.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_pt-BR.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_pt-PT.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ro.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ru.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sk.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sl.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sv.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sw.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ta.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_te.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_th.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_tr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_uk.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ur.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_vi.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_zh-CN.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_zh-TW.dll
c:\program files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
c:\program files (x86)\Google\Update\1.3.21.115\psmachine.dll
c:\program files (x86)\Google\Update\1.3.21.115\psuser.dll
c:\program files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.115\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\21.0.1180.83\21.0.1180.83_21.0.1180.79_chrome_updater.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\users\Woytman\AppData\Local\Facebook\Update
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\FacebookCrashHandler.exe
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdate.exe
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdateHelper.msi
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ar.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bg.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bn.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ca.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_cs.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_da.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_de.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_el.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en-GB.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es-419.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_et.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fa.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fi.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fil.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_gu.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hi.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hu.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_id.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_is.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_it.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_iw.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ja.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_kn.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ko.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lt.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lv.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ml.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_mr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ms.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_nl.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_no.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_or.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pl.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-BR.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-PT.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ro.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ru.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sk.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sl.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sv.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ta.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_te.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_th.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_tr.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_uk.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ur.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_vi.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-CN.dll
c:\users\Woytman\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-TW.dll
c:\users\Woytman\AppData\Local\Facebook\Update\FacebookUpdate.exe
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000Core.job
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4017719214-3181596340-2209486444-1000UA.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-08-01 do 2012-09-01 )))))))))))))))))))))))))))))))
.
.
2012-09-01 13:28 . 2012-09-01 13:28 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-09-01 13:28 . 2012-09-01 13:28 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-09-01 12:58 . 2012-09-01 12:58 -------- d-----w- c:\windows\Sun
2012-09-01 11:23 . 2012-09-01 11:23 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{88BB0521-FF83-47DB-BF4C-A834757B11D2}\offreg.dll
2012-08-31 14:30 . 2012-08-27 23:49 9310152 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{88BB0521-FF83-47DB-BF4C-A834757B11D2}\mpengine.dll
2012-08-30 17:19 . 2012-08-30 17:19 -------- d-----w- c:\program files (x86)\Weeny Free Password Recovery
2012-08-29 22:46 . 2012-08-29 22:46 -------- d-----w- c:\program files (x86)\Easy Gif Maker
2012-08-17 05:07 . 2012-07-06 20:07 552960 ----a-w- c:\windows\system32\drivers\bthport.sys
2012-08-15 22:30 . 2012-05-05 08:36 503808 ----a-w- c:\windows\system32\srcore.dll
2012-08-15 22:30 . 2012-05-05 07:46 43008 ----a-w- c:\windows\SysWow64\srclient.dll
2012-08-15 22:30 . 2012-02-11 06:43 751104 ----a-w- c:\windows\system32\win32spl.dll
2012-08-15 22:30 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2012-08-15 22:30 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2012-08-15 22:30 . 2012-02-11 05:43 492032 ----a-w- c:\windows\SysWow64\win32spl.dll
2012-08-15 22:30 . 2012-07-04 22:16 73216 ----a-w- c:\windows\system32\netapi32.dll
2012-08-15 22:30 . 2012-07-04 22:13 59392 ----a-w- c:\windows\system32\browcli.dll
2012-08-15 22:30 . 2012-07-04 22:13 136704 ----a-w- c:\windows\system32\browser.dll
2012-08-15 22:30 . 2012-07-04 21:14 41984 ----a-w- c:\windows\SysWow64\browcli.dll
2012-08-15 22:30 . 2012-07-18 18:15 3148800 ----a-w- c:\windows\system32\win32k.sys
2012-08-15 22:30 . 2012-05-14 05:26 956928 ----a-w- c:\windows\system32\localspl.dll
2012-08-15 16:10 . 2012-08-31 09:36 -------- d-----w- c:\users\Woytman\AppData\Local\ElevatedDiagnostics
2012-08-12 01:01 . 2012-08-12 01:01 -------- d-----w- c:\program files (x86)\Common Files\Intel Corporation
2012-08-10 15:24 . 2012-08-10 15:24 -------- d-----w- c:\program files (x86)\Electronic Arts
2012-08-09 12:42 . 1999-12-17 08:13 86016 ----a-w- c:\windows\unvise32.exe
2012-08-09 12:31 . 2012-08-09 12:31 -------- d-----w- c:\program files (x86)\Yontoo
2012-08-09 12:31 . 2012-08-09 12:53 -------- d-----w- c:\programdata\Tarma Installer
2012-08-09 12:31 . 2012-08-09 12:51 -------- d-----w- c:\program files (x86)\1ClickDownload
2012-08-07 17:38 . 2012-08-07 17:38 -------- d-sh--w- c:\programdata\DSS
2012-08-07 17:38 . 2012-08-07 17:38 -------- d-----w- c:\programdata\Codemasters
2012-08-07 14:42 . 2010-09-22 11:12 19087360 ----a-w- c:\windows\SysWow64\mkl_blueripple.dll
2012-08-07 14:42 . 2011-03-19 13:16 1417216 ----a-w- c:\windows\SysWow64\rapture3d_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 -------- d-----w- c:\program files (x86)\BRS
2012-08-07 14:42 . 2012-08-07 14:42 466456 ----a-w- c:\windows\system32\wrap_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 122904 ----a-w- c:\windows\system32\OpenAL32.dll
2012-08-07 14:42 . 2012-08-07 14:42 -------- d-----w- c:\program files (x86)\OpenAL
2012-08-07 14:42 . 2012-08-07 14:42 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2012-08-07 14:42 . 2012-08-07 14:42 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2012-08-07 14:23 . 2012-08-07 14:23 -------- d-----w- c:\program files (x86)\Codemasters
2012-08-06 11:05 . 2012-08-06 11:36 -------- d-----w- c:\users\Woytman\AppData\Roaming\CENZURA HD
2012-08-06 11:05 . 2012-08-06 11:05 -------- d-----w- c:\program files (x86)\CENZURA HD
2012-08-04 20:21 . 2012-08-04 20:22 -------- d-----w- c:\users\Woytman\AppData\Local\Facebook
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-17 05:04 . 2012-07-04 22:19 62134624 ----a-w- c:\windows\system32\MRT.exe
2012-08-14 22:24 . 2012-07-05 16:25 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-08-14 22:24 . 2012-07-05 16:25 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-07-27 07:50 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2012-07-27 07:50 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2012-07-22 16:50 . 2012-07-09 18:29 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2012-07-22 16:50 . 2012-07-08 14:27 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2012-07-18 09:40 . 2012-07-18 09:40 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll
2012-07-16 23:05 . 2012-07-16 23:05 274151 ----a-w- c:\windows\GIF to AVI SWF Converter Uninstaller.exe
2012-07-16 07:58 . 2012-07-08 14:27 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2012-07-09 20:33 . 2012-07-09 20:33 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2012-07-09 20:33 . 2012-07-09 20:33 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll
2012-07-09 20:33 . 2012-07-09 20:33 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll
2012-07-08 14:27 . 2012-07-08 14:27 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2012-07-06 21:43 . 2011-03-28 16:36 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-07-05 20:46 . 2012-07-05 20:46 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-07-04 22:06 . 2012-07-04 22:06 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2012-07-04 22:06 . 2012-07-04 22:06 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2012-07-04 22:06 . 2012-07-04 22:06 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2012-07-04 22:06 . 2012-07-04 22:06 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2012-07-04 22:06 . 2012-07-04 22:06 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2012-07-04 22:06 . 2012-07-04 22:06 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2012-07-04 22:06 . 2012-07-04 22:06 367104 ----a-w- c:\windows\SysWow64\html.iec
2012-07-04 22:06 . 2012-07-04 22:06 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2012-07-04 22:06 . 2012-07-04 22:06 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2012-07-04 22:06 . 2012-07-04 22:06 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2012-07-04 22:06 . 2012-07-04 22:06 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2012-07-04 22:06 . 2012-07-04 22:06 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2012-07-04 22:06 . 2012-07-04 22:06 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2012-07-04 22:06 . 2012-07-04 22:06 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2012-07-04 22:06 . 2012-07-04 22:06 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2012-07-04 22:06 . 2012-07-04 22:06 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2012-07-04 22:06 . 2012-07-04 22:06 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2012-07-04 22:06 . 2012-07-04 22:06 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2012-07-04 22:06 . 2012-07-04 22:06 89088 ----a-w- c:\windows\system32\ie4uinit.exe
2012-07-04 22:06 . 2012-07-04 22:06 85504 ----a-w- c:\windows\system32\iesetup.dll
2012-07-04 22:06 . 2012-07-04 22:06 82432 ----a-w- c:\windows\system32\icardie.dll
2012-07-04 22:06 . 2012-07-04 22:06 76800 ----a-w- c:\windows\system32\tdc.ocx
2012-07-04 22:06 . 2012-07-04 22:06 697344 ----a-w- c:\windows\system32\msfeeds.dll
2012-07-04 22:06 . 2012-07-04 22:06 65024 ----a-w- c:\windows\system32\pngfilt.dll
2012-07-04 22:06 . 2012-07-04 22:06 603648 ----a-w- c:\windows\system32\vbscript.dll
2012-07-04 22:06 . 2012-07-04 22:06 55296 ----a-w- c:\windows\system32\msfeedsbs.dll
2012-07-04 22:06 . 2012-07-04 22:06 534528 ----a-w- c:\windows\system32\ieapfltr.dll
2012-07-04 22:06 . 2012-07-04 22:06 49664 ----a-w- c:\windows\system32\imgutil.dll
2012-07-04 22:06 . 2012-07-04 22:06 48640 ----a-w- c:\windows\system32\mshtmler.dll
2012-07-04 22:06 . 2012-07-04 22:06 452608 ----a-w- c:\windows\system32\dxtmsft.dll
2012-07-04 22:06 . 2012-07-04 22:06 448512 ----a-w- c:\windows\system32\html.iec
2012-07-04 22:06 . 2012-07-04 22:06 403248 ----a-w- c:\windows\system32\iedkcs32.dll
2012-07-04 22:06 . 2012-07-04 22:06 39936 ----a-w- c:\windows\system32\iernonce.dll
2012-07-04 22:06 . 2012-07-04 22:06 3695416 ----a-w- c:\windows\system32\ieapfltr.dat
2012-07-04 22:06 . 2012-07-04 22:06 30720 ----a-w- c:\windows\system32\licmgr10.dll
2012-07-04 22:06 . 2012-07-04 22:06 282112 ----a-w- c:\windows\system32\dxtrans.dll
2012-07-04 22:06 . 2012-07-04 22:06 267776 ----a-w- c:\windows\system32\ieaksie.dll
2012-07-04 22:06 . 2012-07-04 22:06 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-07-04 22:06 . 2012-07-04 22:06 222208 ----a-w- c:\windows\system32\msls31.dll
2012-07-04 22:06 . 2012-07-04 22:06 197120 ----a-w- c:\windows\system32\msrating.dll
2012-07-04 22:06 . 2012-07-04 22:06 165888 ----a-w- c:\windows\system32\iexpress.exe
2012-07-04 22:06 . 2012-07-04 22:06 163840 ----a-w- c:\windows\system32\ieakui.dll
2012-07-04 22:06 . 2012-07-04 22:06 160256 ----a-w- c:\windows\system32\wextract.exe
2012-07-04 22:06 . 2012-07-04 22:06 160256 ----a-w- c:\windows\system32\ieakeng.dll
2012-07-04 22:06 . 2012-07-04 22:06 149504 ----a-w- c:\windows\system32\occache.dll
2012-07-04 22:06 . 2012-07-04 22:06 145920 ----a-w- c:\windows\system32\iepeers.dll
2012-07-04 22:06 . 2012-07-04 22:06 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2012-07-04 22:06 . 2012-07-04 22:06 12288 ----a-w- c:\windows\system32\mshta.exe
2012-07-04 22:06 . 2012-07-04 22:06 114176 ----a-w- c:\windows\system32\admparse.dll
2012-07-04 22:06 . 2012-07-04 22:06 111616 ----a-w- c:\windows\system32\iesysprep.dll
2012-07-04 22:06 . 2012-07-04 22:06 10752 ----a-w- c:\windows\system32\msfeedssync.exe
2012-07-04 22:06 . 2012-07-04 22:06 103936 ----a-w- c:\windows\system32\inseng.dll
2012-07-04 21:58 . 2012-07-04 21:58 163048 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10141.bin
2012-07-04 21:26 . 2012-07-04 21:26 6656 ----a-w- c:\windows\system32\bcmwlrc.dll
2012-07-03 16:21 . 2012-07-04 21:33 355856 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-07-03 16:21 . 2012-07-04 21:33 54072 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-07-03 16:21 . 2012-07-04 21:33 59728 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-07-03 16:21 . 2012-07-04 21:33 958400 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-07-03 16:21 . 2012-07-04 21:33 71064 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-07-03 16:21 . 2012-07-04 21:33 25232 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-07-03 16:21 . 2012-07-04 21:31 41224 ----a-w- c:\windows\avastSS.scr
2012-07-03 16:21 . 2012-07-04 21:31 227648 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-07-03 16:21 . 2012-07-04 21:33 285328 ----a-w- c:\windows\system32\aswBoot.exe
2012-06-21 08:37 . 2012-06-21 08:37 3166792 ------w- c:\windows\SysWow64\pbsvc.exe
2012-06-09 05:43 . 2012-07-11 18:12 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-06-06 06:06 . 2012-07-11 18:12 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 06:06 . 2012-07-11 18:12 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 06:02 . 2012-07-11 18:11 1133568 ----a-w- c:\windows\system32\cdosys.dll
2012-06-06 05:05 . 2012-07-11 18:12 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-06-06 05:05 . 2012-07-11 18:12 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-06-06 05:03 . 2012-07-11 18:11 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-08-31_09.12.39 )))))))))))))))))))))))))))))))))))))))))
.
- 2009-07-14 04:54 . 2012-08-31 08:15 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-09-01 13:30 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-08-31 08:15 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-09-01 13:30 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-08-31 08:15 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-09-01 13:30 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-07-05 06:18 . 2012-08-31 14:26 26228 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-08-31 14:26 30626 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 04:46 . 2012-09-01 10:28 88992 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2012-07-04 21:05 . 2012-08-31 14:26 4930 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-4017719214-3181596340-2209486444-1000_UserData.bin
+ 2012-09-01 13:29 . 2012-09-01 13:29 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-08-30 21:06 . 2012-08-31 08:18 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-09-01 13:29 . 2012-09-01 13:29 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-08-30 21:06 . 2012-08-31 08:18 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-07-05 06:18 . 2012-09-01 09:25 204360 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2012-07-05 10:23 . 2012-09-01 09:52 214076 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
- 2009-07-14 02:36 . 2012-08-31 08:22 651938 c:\windows\system32\perfh009.dat
+ 2009-07-14 02:36 . 2012-09-01 13:07 651938 c:\windows\system32\perfh009.dat
- 2009-07-26 18:41 . 2012-08-31 08:22 666194 c:\windows\system32\perfh005.dat
+ 2009-07-26 18:41 . 2012-09-01 13:07 666194 c:\windows\system32\perfh005.dat
+ 2009-07-14 02:36 . 2012-09-01 13:07 120870 c:\windows\system32\perfc009.dat
- 2009-07-14 02:36 . 2012-08-31 08:22 120870 c:\windows\system32\perfc009.dat
- 2009-07-26 18:41 . 2012-08-31 08:22 139890 c:\windows\system32\perfc005.dat
+ 2009-07-26 18:41 . 2012-09-01 13:07 139890 c:\windows\system32\perfc005.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
"DrvUpdater"="c:\users\Woytman\AppData\Roaming\DRPSu\DrvUpdater.exe" [2011-04-28 192856]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-07-03 4273976]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-04-13 284696]
"VideoWebCamera"="c:\program files (x86)\VideoWebCamera\VideoWebCamera.exe" [2010-05-26 1545568]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2010-06-22 968272]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-14 250056]
R3 ASPI;Advanced SCSI Programming Interface Driver;c:\windows\System32\DRIVERS\ASPI32.sys [x]
R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys [2010-07-29 36000]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys [2010-07-29 295072]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys [2010-07-29 201376]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys [2010-07-29 51872]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys [2010-07-29 154272]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys [2010-07-29 270496]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-14 113120]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 20992]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 TurboBoost;TurboBoost;c:\program files\Intel\TurboBoost\TurboBoost.exe [2009-11-02 126352]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2012-07-05 1255736]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2011-11-26 28992]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-07-05 283200]
S1 VWiFiFlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-07-03 71064]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe [2010-07-29 52896]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2010-06-22 321104]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
S2 Live Updater Service;Live Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2012-04-05 255376]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-11-26 2253120]
S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2009-11-02 13784]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys [2010-07-29 28832]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2010-04-13 135560]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
S3 TotRec8;Total Recorder WDM audio filter driver;c:\windows\system32\drivers\TotRec8.sys [2010-10-14 122960]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-09-01 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-05 22:24]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-07-03 16:21 133400 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-01-10 167704]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-01-10 392984]
"Persistence"="c:\windows\system32\igfxpers.exe" [2012-01-10 417560]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-06-22 10920552]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"ETDWare"="c:\program files (x86)\Elantech\ETDCtrl.exe" [BU]
"AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2010-07-29 594080]
"AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2010-07-29 377504]
"combofix"="c:\combofix\CF15725.3XE" [2010-11-20 345088]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
TCP: DhcpNameServer = 82.100.3.1 62.240.162.158
FF - ProfilePath - c:\users\Woytman\AppData\Roaming\Mozilla\Firefox\Profiles\kz4bbz1y.default\
FF - user.js: extentions.y2layers.installId - 3971dea7-461e-4e23-97a4-c37c06736f1d
FF - user.js: extentions.y2layers.defaultEnableAppsList - bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{687578B9-7132-4A7A-80E4-30EE31099E03} - (no file)
.
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Bonjour\mDNSResponder.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\windows\SysWOW64\PnkBstrA.exe
.
**************************************************************************
.
Celkový čas: 2012-09-01 15:35:01 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-09-01 13:35
ComboFix2.txt 2012-08-31 09:14
.
Před spuštěním: Volných bajtů: 157 331 685 376
Po spuštění: Volných bajtů: 156 851 535 872
.
- - End Of File - - 5B53B63A41A9B9E238C3CBD261788050
- autoprd
- Level 4.5
- Příspěvky: 1715
- Registrován: únor 09
- Bydliště: ▼▲☺U Pc ☺▼▲
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Problém se startupem :)
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-09-01 15:49:28
-----------------------------
15:49:28.499 OS Version: Windows x64 6.1.7601 Service Pack 1
15:49:28.499 Number of processors: 4 586 0x2505
15:49:28.499 ComputerName: WOYTMAN-PC UserName: Woytman
15:49:30.137 Initialize success
15:49:31.744 AVAST engine defs: 12083102
15:49:39.903 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
15:49:39.934 Disk 0 Vendor: TOSHIBA_ GJ00 Size: 610480MB BusType: 3
15:49:39.949 Disk 0 MBR read successfully
15:49:39.949 Disk 0 MBR scan
15:49:40.417 Disk 0 Windows 7 default MBR code
15:49:40.433 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 19000 MB offset 2048
15:49:41.041 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 38914048
15:49:41.104 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 469812 MB offset 39118848
15:49:41.119 Disk 0 Partition - 00 0F Extended LBA 121565 MB offset 1001295872
15:49:41.166 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 121564 MB offset 1001297920
15:49:41.525 Disk 0 scanning C:\Windows\system32\drivers
15:49:56.454 Service scanning
15:50:24.862 Modules scanning
15:50:24.862 Disk 0 trace - called modules:
15:50:24.909 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
15:50:24.909 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8005fc2060]
15:50:24.909 3 CLASSPNP.SYS[fffff8800180143f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004f98050]
15:50:25.907 AVAST engine scan C:\Windows
15:50:28.949 AVAST engine scan C:\Windows\system32
15:52:28.648 AVAST engine scan C:\Windows\system32\drivers
15:52:38.928 AVAST engine scan C:\Users\Woytman
15:59:18.289 AVAST engine scan C:\ProgramData
15:59:45.823 Scan finished successfully
16:00:49.518 Disk 0 MBR has been saved successfully to "C:\Users\Woytman\Downloads\MBR.dat"
16:00:49.518 The log file has been saved successfully to "C:\Users\Woytman\Downloads\aswMBR.txt"
Run date: 2012-09-01 15:49:28
-----------------------------
15:49:28.499 OS Version: Windows x64 6.1.7601 Service Pack 1
15:49:28.499 Number of processors: 4 586 0x2505
15:49:28.499 ComputerName: WOYTMAN-PC UserName: Woytman
15:49:30.137 Initialize success
15:49:31.744 AVAST engine defs: 12083102
15:49:39.903 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
15:49:39.934 Disk 0 Vendor: TOSHIBA_ GJ00 Size: 610480MB BusType: 3
15:49:39.949 Disk 0 MBR read successfully
15:49:39.949 Disk 0 MBR scan
15:49:40.417 Disk 0 Windows 7 default MBR code
15:49:40.433 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 19000 MB offset 2048
15:49:41.041 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 38914048
15:49:41.104 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 469812 MB offset 39118848
15:49:41.119 Disk 0 Partition - 00 0F Extended LBA 121565 MB offset 1001295872
15:49:41.166 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 121564 MB offset 1001297920
15:49:41.525 Disk 0 scanning C:\Windows\system32\drivers
15:49:56.454 Service scanning
15:50:24.862 Modules scanning
15:50:24.862 Disk 0 trace - called modules:
15:50:24.909 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
15:50:24.909 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8005fc2060]
15:50:24.909 3 CLASSPNP.SYS[fffff8800180143f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004f98050]
15:50:25.907 AVAST engine scan C:\Windows
15:50:28.949 AVAST engine scan C:\Windows\system32
15:52:28.648 AVAST engine scan C:\Windows\system32\drivers
15:52:38.928 AVAST engine scan C:\Users\Woytman
15:59:18.289 AVAST engine scan C:\ProgramData
15:59:45.823 Scan finished successfully
16:00:49.518 Disk 0 MBR has been saved successfully to "C:\Users\Woytman\Downloads\MBR.dat"
16:00:49.518 The log file has been saved successfully to "C:\Users\Woytman\Downloads\aswMBR.txt"
- autoprd
- Level 4.5
- Příspěvky: 1715
- Registrován: únor 09
- Bydliště: ▼▲☺U Pc ☺▼▲
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Problém se startupem :)
Mwaw čistej
Hjt log :
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:13:48, on 2.9.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16448)
Boot mode: Normal
Running processes:
C:\Users\Woytman\AppData\Roaming\DRPSu\DrvUpdater.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Woytman\Downloads\hijackthis (1).exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [VideoWebCamera] "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DrvUpdater] C:\Users\Woytman\AppData\Roaming\DRPSu\DrvUpdater.exe /hide
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-21-4017719214-3181596340-2209486444-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9051 bytes

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:13:48, on 2.9.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16448)
Boot mode: Normal
Running processes:
C:\Users\Woytman\AppData\Roaming\DRPSu\DrvUpdater.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Woytman\Downloads\hijackthis (1).exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [VideoWebCamera] "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DrvUpdater] C:\Users\Woytman\AppData\Roaming\DRPSu\DrvUpdater.exe /hide
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-21-4017719214-3181596340-2209486444-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9051 bytes
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Problém se startupem :)
HJT ok
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials
Jak se chová PC?
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials
Jak se chová PC?
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
- autoprd
- Level 4.5
- Příspěvky: 1715
- Registrován: únor 09
- Bydliště: ▼▲☺U Pc ☺▼▲
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Problém se startupem :)
Nu tak wifi už se v pořádku načte :)
Jen grafika jede furt integrovana Intel HD když sem vždy pustil hru ukázala se mi u GPU Nvidia aplikace a ted se uukáže logo integrované grafiky A jede to naní a hry se sekají takže myslím že bude asi chyba v Nvidia Optimus ale zkoušel jsem už troje ovladače a nic
Jen grafika jede furt integrovana Intel HD když sem vždy pustil hru ukázala se mi u GPU Nvidia aplikace a ted se uukáže logo integrované grafiky A jede to naní a hry se sekají takže myslím že bude asi chyba v Nvidia Optimus ale zkoušel jsem už troje ovladače a nic
- autoprd
- Level 4.5
- Příspěvky: 1715
- Registrován: únor 09
- Bydliště: ▼▲☺U Pc ☺▼▲
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Problém se startupem :)
Nu tak wifi už se v pořádku načte :)
Jen grafika jede furt integrovana Intel HD když sem vždy pustil hru ukázala se mi u GPU Nvidia aplikace a ted se uukáže logo integrované grafiky A jede to naní a hry se sekají takže myslím že bude asi chyba v Nvidia Optimus ale zkoušel jsem už troje ovladače a nic
Jen grafika jede furt integrovana Intel HD když sem vždy pustil hru ukázala se mi u GPU Nvidia aplikace a ted se uukáže logo integrované grafiky A jede to naní a hry se sekají takže myslím že bude asi chyba v Nvidia Optimus ale zkoušel jsem už troje ovladače a nic
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Problém se startupem :)
Optimus je strašný sráč a jsou s ním hodně problémy. Stačí se podívat zde na fórum. Zkoušej různé ovladače a nebo pak v BIOSU natvrdo povolovat nebo zakazovat grafiky...
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
- autoprd
- Level 4.5
- Příspěvky: 1715
- Registrován: únor 09
- Bydliště: ▼▲☺U Pc ☺▼▲
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Problém se startupem :)
Při startu se na ploše oběví že je požkozený koš na oddíle C:/ a jestli ho chci vysypat a wifi stejně furt načítá a ntb je seklý..
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Problém se startupem :)
Stáhni si Memtest:
Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
Je třeba zkontrolovat HDD na chyby , zkusit jeho defragmentaci ..
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
Je třeba zkontrolovat HDD na chyby , zkusit jeho defragmentaci ..
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 73 hostů