Několik problémů, prosím o kontrolu :-( Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Clorky
Moderátor / člen HW týmu
Master Level 8.5
Master Level 8.5
Příspěvky: 7032
Registrován: květen 10
Bydliště: Moravskoslezský kraj
Pohlaví: Muž
Stav:
Offline

Několik problémů, prosím o kontrolu :-(

Příspěvekod Clorky » 28 říj 2012 11:04

Zdravím, už jsem tu zase, po nějaké době. Po reinstalovaných windowsech (asi měsíc a půl zpátky) mám zase problémy.

Firefox - Youtube, zelené okno s videem, zasekané
DotA 2 a některé hry - padá AMD Catalyst
Windows - spomalené

Mám nejnovější Firefox, AMD drivery (12.11 beta) a Windows pročištěn CCleanerem... Navíc i s drivery 12.10 to blblo, nevím jestli nedowngradnout na 12.8, tam to bylo v pohodě.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:06:33, on 28.10.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Program Files (x86)\WhatPulse\WhatPulse.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
C:\Program Files (x86)\Expat Shield\bin\openvpntray.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Users\Petr\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Expat Shield Class - {3706EE7C-3CAD-445D-8A43-03EBC3B75908} - C:\Program Files (x86)\Expat Shield\HssIE\ExpatIE.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [WhatPulse] C:\Program Files (x86)\WhatPulse\WhatPulse.exe
O4 - HKCU\..\Run: [ManyCam] "C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe" /silent
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: O&O Defrag Tray.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} (Creative Software AutoUpdate 2) - http://ccfiles.creative.com/Web/softwar ... TSUEng.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: Expat Shield Service (ExpatShieldService) - Unknown owner - C:\Program Files (x86)\Expat Shield\bin\openvpnas.exe
O23 - Service: Expat Shield Routing Service (ExpatSrv) - AnchorFree Inc. - C:\Program Files (x86)\Expat Shield\HssWPR\hsssrv.exe
O23 - Service: Expat Shield Tray Service (ExpatTrayService) - Unknown owner - C:\Program Files (x86)\Expat Shield\bin\ExpatTrayService.EXE
O23 - Service: Expat Shield Monitoring Service (ExpatWd) - Unknown owner - C:\Program Files (x86)\Expat Shield\bin\hsswd.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PDAgent - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Common Files\Raxco\Shared\PDEngine.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RadeonPro Support Service - Mr. John aka japamd - C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10949 bytes

Reklama
Uživatelský avatar
Clorky
Moderátor / člen HW týmu
Master Level 8.5
Master Level 8.5
Příspěvky: 7032
Registrován: květen 10
Bydliště: Moravskoslezský kraj
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod Clorky » 28 říj 2012 21:30

->

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod memphisto » 28 říj 2012 21:47

fix:
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

¨Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
Clorky
Moderátor / člen HW týmu
Master Level 8.5
Master Level 8.5
Příspěvky: 7032
Registrován: květen 10
Bydliště: Moravskoslezský kraj
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod Clorky » 29 říj 2012 15:24

MbAM nic nenašel. HJT hotovo a ATF taktéž.

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod memphisto » 29 říj 2012 16:42

Co se týká problému s FF, tak přeinstaluj Flash Player a zkontroluj kodeky na přehrávání videa a HW akceleraci videa v prohlížeči.
AMD ovladače padají? Jaký div. Běžná věc. Řešil bych to starší a stabilnější verzí. Zpomalený Win nebude viry. Zkontroluj volné místo na sys. disku, defragmentuj, čisti registry. Můžeme dát i COmbofix pokud budeš chtít
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
Clorky
Moderátor / člen HW týmu
Master Level 8.5
Master Level 8.5
Příspěvky: 7032
Registrován: květen 10
Bydliště: Moravskoslezský kraj
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod Clorky » 29 říj 2012 16:51

Defragmentoval jsem pár dní zpátky, CCleanerem projeto taktéž. AMD po úplném odinstalování a nainstalování verze 12.11 Beta4 jedou v pořádku (zatím).
S tím Flash Playerem to udělám. Combofix kdyžtak třeba zítra, jestli se mi nebude něco zdát.

Děkuji za pomoc.

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod memphisto » 29 říj 2012 19:36

Dej pak vědět. CF se může udělat kdykoliv
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
Clorky
Moderátor / člen HW týmu
Master Level 8.5
Master Level 8.5
Příspěvky: 7032
Registrován: květen 10
Bydliště: Moravskoslezský kraj
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod Clorky » 30 říj 2012 14:38

Tady je Combofix:
PC vypadá lépe, jen pro jistotu... jestli nevadí.


ComboFix 12-10-30.01 - Petr 30.10.2012 14:29:30.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1033.18.4094.2679 [GMT 1:00]
Spuštěný z: c:\users\Petr\Desktop\ComboFix.exe
AV: ESET NOD32 Antivirus 5.2 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 5.2 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
Nakažená kopie c:\windows\System32\autoconv.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\winsxs\amd64_microsoft-windows-convert_31bf3856ad364e35_6.1.7601.17514_none_fafb502abef1be40\autoconv.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-09-28 do 2012-10-30 )))))))))))))))))))))))))))))))
.
.
2012-10-30 13:32 . 2012-10-30 13:32 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-10-30 13:08 . 2012-10-12 07:19 9291768 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7B04CCB9-51FD-45CC-838F-6FF6306912B7}\mpengine.dll
2012-10-29 15:57 . 2012-07-01 22:15 4102656 ----a-w- c:\windows\SysWow64\x264vfw.dll
2012-10-29 15:57 . 2011-12-07 17:32 216064 ----a-w- c:\windows\SysWow64\lagarith.dll
2012-10-29 15:57 . 2011-06-24 14:44 243200 ----a-w- c:\windows\SysWow64\xvidvfw.dll
2012-10-29 15:57 . 2011-06-24 14:28 650752 ----a-w- c:\windows\SysWow64\xvidcore.dll
2012-10-29 15:57 . 2004-05-18 18:16 39936 ----a-w- c:\windows\SysWow64\huffyuv.dll
2012-10-29 15:57 . 2012-06-09 17:21 178688 ----a-w- c:\windows\SysWow64\unrar.dll
2012-10-29 15:57 . 2011-12-21 17:14 151552 ----a-w- c:\windows\SysWow64\ac3acm.acm
2012-10-29 15:57 . 2012-10-24 18:00 112640 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2012-10-29 15:57 . 2012-10-29 15:57 -------- d-----w- c:\program files (x86)\K-Lite Codec Pack
2012-10-29 15:53 . 2012-10-29 15:53 73656 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-10-29 15:53 . 2012-10-29 15:53 696760 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-10-29 15:17 . 2012-10-29 15:17 -------- d-----w- c:\programdata\Sony
2012-10-29 15:17 . 2012-10-29 15:17 -------- d-----w- c:\program files (x86)\Sony
2012-10-29 14:28 . 2012-10-29 14:28 -------- d-----w- c:\program files (x86)\Audacity
2012-10-29 14:20 . 2012-10-29 14:20 -------- d-----w- c:\programdata\Malwarebytes
2012-10-29 14:20 . 2012-10-29 14:20 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-10-29 14:20 . 2012-09-29 18:54 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-10-28 13:15 . 2006-09-28 15:05 2414360 ----a-w- c:\windows\SysWow64\d3dx9_31.dll
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\programdata\ATI
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\program files (x86)\AMD AVT
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\program files (x86)\AMD APP
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\program files\Common Files\ATI Technologies
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2012-10-28 12:02 . 2012-10-28 12:02 -------- d-----w- c:\program files (x86)\ATI Technologies
2012-10-28 12:02 . 2012-10-28 12:04 -------- d-----w- c:\program files\ATI Technologies
2012-10-28 12:02 . 2012-10-28 12:02 -------- d-----w- c:\program files\ATI
2012-10-28 11:42 . 2012-10-28 11:42 -------- d-----w- C:\AMD
2012-10-28 11:40 . 2012-10-28 11:40 -------- d-----w- c:\program files (x86)\Full Uninstall
2012-10-26 11:35 . 2012-10-26 19:32 214520 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2012-10-25 20:04 . 2012-10-25 20:04 -------- d-----w- c:\program files (x86)\TeamViewer
2012-10-25 17:30 . 2012-10-25 17:30 -------- d-----w- c:\programdata\RELOADED
2012-10-25 13:33 . 2012-10-25 13:33 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2012-10-25 11:49 . 2012-10-25 11:49 52736 ----a-w- c:\windows\ipuninst.exe
2012-10-25 05:43 . 2012-10-25 05:43 -------- d-----w- c:\windows\Sun
2012-10-24 20:53 . 2012-10-24 20:53 -------- d-----w- c:\program files (x86)\WhatPulse
2012-10-24 13:13 . 2012-10-28 12:04 -------- d-----w- c:\programdata\AMD
2012-10-23 20:51 . 2012-10-23 20:51 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2012-10-23 20:49 . 2012-08-22 18:12 950128 ----a-w- c:\windows\system32\drivers\ndis.sys
2012-10-23 20:49 . 2012-07-04 20:26 41472 ----a-w- c:\windows\system32\drivers\RNDISMP.sys
2012-10-23 20:49 . 2012-08-02 17:58 574464 ----a-w- c:\windows\system32\d3d10level9.dll
2012-10-23 20:49 . 2012-08-02 16:57 490496 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2012-10-23 20:49 . 2012-08-21 21:01 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2012-10-23 18:19 . 2012-10-24 12:53 -------- d-----w- c:\windows\AutoKMS
2012-10-23 18:08 . 2012-10-23 18:08 -------- d-----w- c:\windows\PCHEALTH
2012-10-23 18:05 . 2012-10-23 18:05 -------- d-----w- c:\program files\Microsoft Office
2012-10-23 18:04 . 2012-10-23 18:04 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2012-10-23 18:04 . 2012-10-24 12:55 -------- d-----w- c:\programdata\Microsoft Help
2012-10-23 03:51 . 2012-10-23 03:51 11270656 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-10-23 03:21 . 2012-10-23 03:21 70144 ----a-w- c:\windows\system32\coinst_9.01.8.dll
2012-10-23 03:15 . 2012-10-23 03:15 163840 ----a-w- c:\windows\system32\atiapfxx.exe
2012-10-23 03:13 . 2012-10-23 03:13 51200 ----a-w- c:\windows\system32\aticalrt64.dll
2012-10-23 03:13 . 2012-10-23 03:13 46080 ----a-w- c:\windows\SysWow64\aticalrt.dll
2012-10-23 03:13 . 2012-10-23 03:13 23435776 ----a-w- c:\windows\system32\atio6axx.dll
2012-10-23 03:13 . 2012-10-23 03:13 44544 ----a-w- c:\windows\system32\aticalcl64.dll
2012-10-23 03:13 . 2012-10-23 03:13 44032 ----a-w- c:\windows\SysWow64\aticalcl.dll
2012-10-23 03:13 . 2012-10-23 03:13 16082944 ----a-w- c:\windows\system32\aticaldd64.dll
2012-10-23 03:09 . 2012-10-23 03:09 13703168 ----a-w- c:\windows\SysWow64\aticaldd.dll
2012-10-23 02:59 . 2012-10-23 02:59 1136640 ----a-w- c:\windows\system32\aticfx64.dll
2012-10-23 02:57 . 2012-10-23 02:57 6678528 ----a-w- c:\windows\SysWow64\atidxx32.dll
2012-10-23 02:56 . 2012-10-23 02:56 18957824 ----a-w- c:\windows\SysWow64\atioglxx.dll
2012-10-23 02:52 . 2012-10-23 02:52 442368 ----a-w- c:\windows\system32\atidemgy.dll
2012-10-23 02:52 . 2012-10-23 02:52 548864 ----a-w- c:\windows\system32\atieclxx.exe
2012-10-23 02:51 . 2012-10-23 02:51 240640 ----a-w- c:\windows\system32\atiesrxx.exe
2012-10-23 02:50 . 2012-10-23 02:50 120320 ----a-w- c:\windows\system32\atitmm64.dll
2012-10-23 02:49 . 2012-10-23 02:49 21504 ----a-w- c:\windows\system32\atimuixx.dll
2012-10-23 02:49 . 2012-10-23 02:49 59392 ----a-w- c:\windows\system32\atiedu64.dll
2012-10-23 02:49 . 2012-10-23 02:49 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll
2012-10-23 02:40 . 2012-10-23 02:40 7370240 ----a-w- c:\windows\system32\atidxx64.dll
2012-10-23 02:39 . 2012-10-23 02:39 6778880 ----a-w- c:\windows\system32\atiumd64.dll
2012-10-23 02:28 . 2012-10-23 02:28 618496 ----a-w- c:\windows\system32\atiadlxx.dll
2012-10-23 02:28 . 2012-10-23 02:28 421888 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2012-10-23 02:28 . 2012-10-23 02:28 17920 ----a-w- c:\windows\system32\atig6pxx.dll
2012-10-23 02:27 . 2012-10-23 02:27 14848 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2012-10-23 02:27 . 2012-10-23 02:27 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-10-23 02:27 . 2012-10-23 02:27 41984 ----a-w- c:\windows\system32\atig6txx.dll
2012-10-23 02:27 . 2012-10-23 02:27 33280 ----a-w- c:\windows\SysWow64\atigktxx.dll
2012-10-23 02:27 . 2012-10-23 02:27 546304 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-10-23 02:25 . 2012-10-23 02:25 109568 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2012-10-23 02:25 . 2012-10-23 02:25 104448 ----a-w- c:\windows\system32\atiu9p64.dll
2012-10-23 02:24 . 2012-10-23 02:24 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-10-23 01:44 . 2012-10-23 01:44 4674048 ----a-w- c:\windows\system32\atiumd6a.dll
2012-10-23 01:24 . 2012-10-23 01:24 79360 ----a-w- c:\windows\system32\amdave64.dll
2012-10-23 01:24 . 2012-10-23 01:24 78336 ----a-w- c:\windows\SysWow64\amdave32.dll
2012-10-23 01:24 . 2012-10-23 01:24 74240 ----a-w- c:\windows\system32\atisamu64.dll
2012-10-23 01:24 . 2012-10-23 01:24 71168 ----a-w- c:\windows\SysWow64\atisamu32.dll
2012-10-23 01:24 . 2012-10-23 01:24 56320 ----a-w- c:\windows\system32\atimpc64.dll
2012-10-23 01:24 . 2012-10-23 01:24 56320 ----a-w- c:\windows\system32\amdpcom64.dll
2012-10-23 01:23 . 2012-10-23 01:23 56832 ----a-w- c:\windows\SysWow64\atimpc32.dll
2012-10-23 01:23 . 2012-10-23 01:23 56832 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2012-10-22 21:45 . 2012-10-22 21:45 222720 ----a-w- c:\windows\system32\clinfo.exe
2012-10-22 21:45 . 2012-10-22 21:45 76288 ----a-w- c:\windows\system32\OpenVideo64.dll
2012-10-22 21:45 . 2012-10-22 21:45 65536 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2012-10-22 21:45 . 2012-10-22 21:45 64512 ----a-w- c:\windows\system32\OVDecode64.dll
2012-10-22 21:44 . 2012-10-22 21:44 56320 ----a-w- c:\windows\SysWow64\OVDecode.dll
2012-10-22 21:44 . 2012-10-22 21:44 34523136 ----a-w- c:\windows\system32\amdocl64.dll
2012-10-22 21:40 . 2012-10-22 21:40 28737536 ----a-w- c:\windows\SysWow64\amdocl.dll
2012-10-22 21:36 . 2012-10-22 21:36 54784 ----a-w- c:\windows\system32\OpenCL.dll
2012-10-22 21:36 . 2012-10-22 21:36 50176 ----a-w- c:\windows\SysWow64\OpenCL.dll
2012-10-21 15:31 . 2012-10-21 15:31 314016 ----a-w- c:\windows\system32\drivers\atksgt.sys
2012-10-21 15:31 . 2012-10-21 15:31 43680 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2012-10-21 15:30 . 2012-10-25 13:33 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2012-10-20 20:16 . 2012-10-20 20:24 -------- d-----w- c:\program files (x86)\Common Files\Blizzard Entertainment
2012-10-20 20:16 . 2012-10-20 20:16 -------- d-----w- c:\program files (x86)\World of Warcraft
2012-10-20 15:43 . 2012-10-20 15:43 -------- d-----w- c:\program files (x86)\VST
2012-10-20 15:43 . 2012-10-20 15:43 -------- d-----w- c:\programdata\Acoustica
2012-10-20 12:37 . 2012-10-20 12:37 -------- d-----w- c:\programdata\Ubisoft
2012-10-20 12:29 . 2012-10-26 19:29 214520 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2012-10-20 12:29 . 2012-10-20 12:29 -------- d-----w- c:\program files (x86)\Ubisoft
2012-10-19 20:39 . 2012-10-25 12:44 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2012-10-19 20:38 . 2012-10-19 20:38 -------- d-----w- c:\program files\NVIDIA Corporation
2012-10-19 20:38 . 2012-10-19 20:37 151552 ----a-w- c:\windows\SysWow64\nvRegDev.dll
2012-10-19 20:38 . 2012-10-19 20:37 61440 ----a-w- c:\windows\SysWow64\nvPhotoshopUtil.dll
2012-10-19 20:38 . 2012-10-19 20:37 40960 ----a-w- c:\windows\SysWow64\nvISWOW64.dll
2012-10-19 20:35 . 2012-10-19 20:37 -------- d-----w- c:\program files\Common Files\Adobe
2012-10-19 20:33 . 2012-10-19 20:33 -------- d-----w- c:\program files (x86)\Common Files\Adobe AIR
2012-10-19 20:29 . 2012-10-25 12:43 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2012-10-18 17:41 . 2012-10-18 17:41 -------- d-----w- C:\Fraps
2012-10-17 17:47 . 2012-10-19 22:27 -------- d-----w- C:\Textures Backup
2012-10-16 19:29 . 2012-10-16 19:29 -------- d-----w- c:\program files\NTCore
2012-10-16 12:09 . 2012-10-16 12:09 -------- d-----w- c:\program files (x86)\Common Files\Chameleon Manager
2012-10-16 12:09 . 2012-10-16 12:09 -------- d-----w- c:\program files (x86)\Chameleon Shutdown
2012-10-15 13:58 . 2012-10-15 13:58 -------- d-----w- c:\windows\SysWow64\Wat
2012-10-15 13:58 . 2012-10-15 13:58 -------- d-----w- c:\windows\system32\Wat
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-23 03:54 . 2012-07-28 04:09 5623976 ----a-w- c:\windows\SysWow64\atiumdag.dll
2012-10-23 03:00 . 2012-07-28 02:15 948224 ----a-w- c:\windows\SysWow64\aticfx32.dll
2012-10-23 02:25 . 2012-07-28 01:13 130048 ----a-w- c:\windows\system32\atiuxp64.dll
2012-10-23 02:25 . 2012-07-28 01:13 83968 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2012-10-23 01:34 . 2012-07-28 01:32 3862528 ----a-w- c:\windows\SysWow64\atiumdva.dll
2012-09-11 13:24 . 2012-09-11 13:24 126232 ----a-w- c:\windows\system32\drivers\DefragFs.sys
2012-09-06 16:05 . 2012-09-06 16:05 3953152 ----a-w- c:\windows\system32\SlotMaximizerBe.dll
2012-09-06 16:05 . 2012-09-06 16:05 2839552 ----a-w- c:\windows\SysWow64\SlotMaximizerBe.dll
2012-09-06 16:05 . 2012-09-06 16:05 198144 ----a-w- c:\windows\system32\SlotMaximizerAg.dll
2012-09-06 16:05 . 2012-09-06 16:05 161792 ----a-w- c:\windows\SysWow64\SlotMaximizerAg.dll
2012-09-05 08:12 . 2012-09-05 08:12 96768 ----a-w- c:\windows\system32\fsutil.exe
2012-09-05 08:12 . 2012-09-05 08:12 91648 ----a-w- c:\windows\system32\drivers\USBSTOR.SYS
2012-09-05 08:12 . 2012-09-05 08:12 74240 ----a-w- c:\windows\SysWow64\fsutil.exe
2012-09-05 08:12 . 2012-09-05 08:12 410496 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2012-09-05 08:12 . 2012-09-05 08:12 27008 ----a-w- c:\windows\system32\drivers\amdxata.sys
2012-09-05 08:12 . 2012-09-05 08:12 2565632 ----a-w- c:\windows\system32\esent.dll
2012-09-05 08:12 . 2012-09-05 08:12 189824 ----a-w- c:\windows\system32\drivers\storport.sys
2012-09-05 08:12 . 2012-09-05 08:12 1699328 ----a-w- c:\windows\SysWow64\esent.dll
2012-09-05 08:12 . 2012-09-05 08:12 166272 ----a-w- c:\windows\system32\drivers\nvstor.sys
2012-09-05 08:12 . 2012-09-05 08:12 148352 ----a-w- c:\windows\system32\drivers\nvraid.sys
2012-09-05 08:12 . 2012-09-05 08:12 107904 ----a-w- c:\windows\system32\drivers\amdsata.sys
2012-09-05 08:11 . 2012-09-05 08:11 98816 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2012-09-05 08:11 . 2012-09-05 08:11 7936 ----a-w- c:\windows\system32\drivers\usbd.sys
2012-09-05 08:11 . 2012-09-05 08:11 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys
2012-09-05 08:11 . 2012-09-05 08:11 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys
2012-09-05 08:11 . 2012-09-05 08:11 325120 ----a-w- c:\windows\system32\drivers\usbport.sys
2012-09-05 08:11 . 2012-09-05 08:11 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2012-09-05 08:11 . 2012-09-05 08:11 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys
2012-09-05 08:11 . 2012-09-05 08:11 503808 ----a-w- c:\windows\system32\srcore.dll
2012-09-05 08:11 . 2012-09-05 08:11 43008 ----a-w- c:\windows\SysWow64\srclient.dll
2012-09-05 08:11 . 2012-09-05 08:11 514560 ----a-w- c:\windows\SysWow64\qdvd.dll
2012-09-05 08:11 . 2012-09-05 08:11 366592 ----a-w- c:\windows\system32\qdvd.dll
2012-09-05 08:11 . 2012-09-05 08:11 209920 ----a-w- c:\windows\system32\profsvc.dll
2012-09-05 08:11 . 2012-09-05 08:11 3216384 ----a-w- c:\windows\system32\msi.dll
2012-09-05 08:11 . 2012-09-05 08:11 2342400 ----a-w- c:\windows\SysWow64\msi.dll
2012-09-05 08:10 . 2012-09-05 08:10 515584 ----a-w- c:\windows\system32\timedate.cpl
2012-09-05 08:10 . 2012-09-05 08:10 478720 ----a-w- c:\windows\SysWow64\timedate.cpl
2012-09-05 08:10 . 2012-09-05 08:10 751104 ----a-w- c:\windows\system32\win32spl.dll
2012-09-05 08:10 . 2012-09-05 08:10 67072 ----a-w- c:\windows\splwow64.exe
2012-09-05 08:10 . 2012-09-05 08:10 559104 ----a-w- c:\windows\system32\spoolsv.exe
2012-09-05 08:10 . 2012-09-05 08:10 492032 ----a-w- c:\windows\SysWow64\win32spl.dll
2012-09-05 08:10 . 2012-09-05 08:10 509952 ----a-w- c:\windows\system32\ntshrui.dll
2012-09-05 08:10 . 2012-09-05 08:10 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll
2012-09-05 08:10 . 2012-09-05 08:10 199680 ----a-w- c:\windows\system32\xmllite.dll
2012-09-05 08:10 . 2012-09-05 08:10 86528 ----a-w- c:\windows\SysWow64\SearchFilterHost.exe
2012-09-05 08:10 . 2012-09-05 08:10 778752 ----a-w- c:\windows\system32\mssvp.dll
2012-09-05 08:10 . 2012-09-05 08:10 75264 ----a-w- c:\windows\system32\msscntrs.dll
2012-09-05 08:10 . 2012-09-05 08:10 666624 ----a-w- c:\windows\SysWow64\mssvp.dll
2012-09-05 08:10 . 2012-09-05 08:10 59392 ----a-w- c:\windows\SysWow64\msscntrs.dll
2012-09-05 08:10 . 2012-09-05 08:10 591872 ----a-w- c:\windows\system32\SearchIndexer.exe
2012-09-05 08:10 . 2012-09-05 08:10 491520 ----a-w- c:\windows\system32\mssph.dll
2012-09-05 08:10 . 2012-09-05 08:10 427520 ----a-w- c:\windows\SysWow64\SearchIndexer.exe
2012-09-05 08:10 . 2012-09-05 08:10 337408 ----a-w- c:\windows\SysWow64\mssph.dll
2012-09-05 08:10 . 2012-09-05 08:10 288256 ----a-w- c:\windows\system32\mssphtb.dll
2012-09-05 08:10 . 2012-09-05 08:10 249856 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2012-09-05 08:10 . 2012-09-05 08:10 2315776 ----a-w- c:\windows\system32\tquery.dll
2012-09-05 08:10 . 2012-09-05 08:10 2223616 ----a-w- c:\windows\system32\mssrch.dll
2012-09-05 08:10 . 2012-09-05 08:10 197120 ----a-w- c:\windows\SysWow64\mssphtb.dll
2012-09-05 08:10 . 2012-09-05 08:10 164352 ----a-w- c:\windows\SysWow64\SearchProtocolHost.exe
2012-09-05 08:10 . 2012-09-05 08:10 1549312 ----a-w- c:\windows\SysWow64\tquery.dll
2012-09-05 08:10 . 2012-09-05 08:10 1401344 ----a-w- c:\windows\SysWow64\mssrch.dll
2012-09-05 08:10 . 2012-09-05 08:10 113664 ----a-w- c:\windows\system32\SearchFilterHost.exe
2012-09-05 08:09 . 2012-09-05 08:09 27520 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2012-09-05 08:09 . 2012-09-05 08:09 870912 ----a-w- c:\windows\SysWow64\XpsPrint.dll
2012-09-05 08:09 . 2012-09-05 08:09 1465344 ----a-w- c:\windows\system32\XpsPrint.dll
2012-09-05 08:09 . 2012-09-05 08:09 2871808 ----a-w- c:\windows\explorer.exe
2012-09-05 08:09 . 2012-09-05 08:09 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2012-09-05 08:09 . 2012-09-05 08:09 476160 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2012-09-05 08:09 . 2012-09-05 08:09 288256 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2012-09-05 08:09 . 2012-09-05 08:09 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2012-09-05 08:09 . 2012-09-05 08:09 31232 ----a-w- c:\windows\system32\prevhost.exe
2012-09-05 08:09 . 2012-09-05 08:09 902656 ----a-w- c:\windows\system32\d2d1.dll
2012-09-05 08:09 . 2012-09-05 08:09 739840 ----a-w- c:\windows\SysWow64\d2d1.dll
2012-09-05 08:09 . 2012-09-05 08:09 1139200 ----a-w- c:\windows\system32\FntCache.dll
2012-09-05 08:09 . 2012-09-05 08:09 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2012-09-05 08:09 . 2012-09-05 08:09 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2012-09-05 08:08 . 2012-09-05 08:08 197120 ----a-w- c:\windows\system32\d3d10_1.dll
2012-09-05 08:08 . 2012-09-05 08:08 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2012-09-05 08:07 . 2012-09-05 08:07 64512 ----a-w- c:\windows\SysWow64\devobj.dll
2012-09-05 08:07 . 2012-09-05 08:07 44544 ----a-w- c:\windows\SysWow64\devrtl.dll
2012-09-05 08:07 . 2012-09-05 08:07 404480 ----a-w- c:\windows\system32\umpnpmgr.dll
2012-09-05 08:07 . 2012-09-05 08:07 252928 ----a-w- c:\windows\SysWow64\drvinst.exe
2012-09-05 08:07 . 2012-09-05 08:07 145920 ----a-w- c:\windows\SysWow64\cfgmgr32.dll
2012-09-05 08:07 . 2012-09-05 08:07 642944 ----a-w- c:\windows\system32\winload.efi
2012-09-05 08:07 . 2012-09-05 08:07 605552 ----a-w- c:\windows\system32\winload.exe
2012-09-05 08:07 . 2012-09-05 08:07 566208 ----a-w- c:\windows\system32\winresume.efi
2012-09-05 08:07 . 2012-09-05 08:07 518672 ----a-w- c:\windows\system32\winresume.exe
2012-09-05 08:07 . 2012-09-05 08:07 20352 ----a-w- c:\windows\system32\kdusb.dll
2012-09-05 08:07 . 2012-09-05 08:07 19328 ----a-w- c:\windows\system32\kd1394.dll
2012-09-05 08:07 . 2012-09-05 08:07 17792 ----a-w- c:\windows\system32\kdcom.dll
2012-09-05 08:07 . 2012-09-05 08:07 3148800 ----a-w- c:\windows\system32\win32k.sys
2012-09-05 08:07 . 2012-09-05 08:07 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll
2012-09-05 08:07 . 2012-09-05 08:07 2048 ----a-w- c:\windows\system32\msxml3r.dll
2012-09-05 08:07 . 2012-09-05 08:07 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-09-05 08:07 . 2012-09-05 08:07 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-09-05 08:07 . 2012-09-05 08:07 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-09-05 08:07 . 2012-09-05 08:07 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-09-05 08:07 . 2012-09-05 08:07 956928 ----a-w- c:\windows\system32\localspl.dll
2012-09-05 08:06 . 2012-09-05 08:06 73216 ----a-w- c:\windows\system32\netapi32.dll
2012-09-05 08:06 . 2012-09-05 08:06 59392 ----a-w- c:\windows\system32\browcli.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\program files (x86)\uTorrent\uTorrent.exe" [2012-10-14 963984]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-08-28 3671904]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
"WhatPulse"="c:\program files (x86)\WhatPulse\WhatPulse.exe" [2011-11-15 3990528]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2012-01-03 815512]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-10-22 642216]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ PDBoot.exe\0autocheck autochk *\0OODBS
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-09 123856]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
R3 2310_00;2310_00;c:\windows\system32\drivers\2310_00.sys [2009-06-12 170528]
R3 272x_1x;272x_1x;c:\windows\system32\drivers\272x_1x.sys [2012-04-24 612672]
R3 274x_3x;274x_3x;c:\windows\system32\drivers\274x_3x.sys [2012-04-24 240960]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-29 250808]
R3 ahcix64s;ahcix64s;c:\windows\system32\drivers\ahcix64s.sys [2011-12-29 292136]
R3 amd_sata;amd_sata;c:\windows\system32\drivers\amd_sata.sys [2012-04-11 82560]
R3 arcm_a64;arcm_a64;c:\windows\system32\drivers\arcm_a64.sys [2009-11-09 52768]
R3 asahci64;asahci64;c:\windows\system32\drivers\asahci64.sys [2012-01-06 49760]
R3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2012-10-14 79360]
R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-10-14 79360]
R3 DC133;DC133;c:\windows\system32\drivers\DC133.sys [2011-05-02 39320]
R3 DC150;DC150;c:\windows\system32\drivers\DC150.sys [2011-05-02 39832]
R3 DC154;DC154;c:\windows\system32\drivers\DC154.sys [2011-05-02 48136]
R3 DC300e;DC300e;c:\windows\system32\drivers\DC300e.sys [2011-05-02 40344]
R3 DC324e;DC324e;c:\windows\system32\drivers\DC324e.sys [2011-05-02 49752]
R3 DC4300;DC4300;c:\windows\system32\drivers\DC4300.sys [2011-05-02 48360]
R3 DC600e;DC600e;c:\windows\system32\drivers\DC600e.sys [2011-05-02 40744]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
R3 hptiop;hptiop;c:\windows\system32\drivers\hptiop.sys [2009-05-25 17440]
R3 hptmv;hptmv;c:\windows\system32\drivers\hptmv.sys [2006-09-18 93472]
R3 hptmv6;hptmv6;c:\windows\system32\drivers\hptmv6.sys [2007-11-01 152096]
R3 iaStorA;iaStorA;c:\windows\system32\drivers\iaStorA.sys [2012-06-20 578008]
R3 iaStorS;iaStorS;c:\windows\system32\drivers\iaStorS.sys [2012-06-29 651224]
R3 ManyCam;ManyCam Virtual Webcam;c:\windows\system32\DRIVERS\mcvidrv_x64.sys [2012-10-11 44928]
R3 mcaudrv_simple;ManyCam Virtual Microphone;c:\windows\system32\drivers\mcaudrv_x64.sys [2012-10-11 29696]
R3 megasas2;megasas2;c:\windows\system32\drivers\megasas2.sys [2012-02-28 51496]
R3 megasr1;megasr1;c:\windows\system32\drivers\MegaSR1.sys [2009-04-16 461320]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-10-27 115168]
R3 mv61xx;mv61xx;c:\windows\system32\drivers\mv61xx.sys [2011-05-06 182576]
R3 mv91cons;mv91cons;c:\windows\system32\drivers\mv91cons.sys [2012-02-23 27440]
R3 Pnp680;Pnp680;c:\windows\system32\drivers\pnp680.sys [2007-11-13 80424]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-21 20992]
R3 RivaTuner64;RivaTuner64;c:\program files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [2012-10-20 19952]
R3 rr172x;rr172x;c:\windows\system32\drivers\rr172x.sys [2007-11-01 124448]
R3 rr174x;rr174x;c:\windows\system32\drivers\rr174x.sys [2007-11-01 159264]
R3 rr2210;rr2210;c:\windows\system32\drivers\rr2210.sys [2007-11-01 153632]
R3 rr232x;rr232x;c:\windows\system32\drivers\rr232x.sys [2008-05-05 152096]
R3 rr2340;rr2340;c:\windows\system32\drivers\rr2340.sys [2009-12-31 162400]
R3 rr2522;rr2522;c:\windows\system32\drivers\rr2522.sys [2009-12-31 168032]
R3 rr276x;rr276x;c:\windows\system32\drivers\rr276x.sys [2012-04-24 241472]
R3 rr278x;rr278x;c:\windows\system32\drivers\rr278x.sys [2012-04-24 240960]
R3 rr62x;rr62x;c:\windows\system32\drivers\rr62x.sys [2010-06-16 156256]
R3 SI3112r;SI3112r;c:\windows\system32\drivers\SI3112r.sys [2007-02-01 164656]
R3 SI3114;SI3114;c:\windows\system32\drivers\SI3114.sys [2006-11-10 99120]
R3 SI3124;SI3124;c:\windows\system32\drivers\SI3124.sys [2006-11-02 113456]
R3 Si3124r5;Si3124r5;c:\windows\system32\drivers\Si3124r5.sys [2006-09-20 334640]
R3 Si3531;Si3531;c:\windows\system32\drivers\Si3531.sys [2009-02-09 333864]
R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [2010-11-21 88960]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2010-11-21 34816]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 viamrx64;viamrx64;c:\windows\system32\drivers\viamrx64.sys [2010-12-02 161904]
R3 videX64;videX64;c:\windows\system32\drivers\videX64.sys [2010-02-11 15000]
R3 vmci;vmci;c:\windows\system32\drivers\vmci.sys [2012-01-17 116336]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-10-15 1255736]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [2010-11-01 14544]
S0 amd_xata;amd_xata;c:\windows\system32\drivers\amd_xata.sys [2012-04-11 42624]
S0 DC3410;DC3410;c:\windows\system32\drivers\DC3410.sys [2011-05-02 48328]
S0 iaStorF;iaStorF;c:\windows\system32\drivers\iaStorF.sys [2012-06-29 26072]
S0 mvs91xx;mvs91xx;c:\windows\system32\drivers\mvs91xx.sys [2012-02-23 317744]
S0 xfiltx64;VIA SATA IDE Hot-plug Driver;c:\windows\system32\drivers\xfiltx64.sys [2010-02-11 26776]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-14 283200]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2012-03-14 209768]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2012-03-14 148528]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-10-23 240640]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2012-03-07 913144]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2012-03-14 137144]
S2 OODefragAgent;O&O Defrag;c:\program files\OO Software\Defrag\oodag.exe [2012-10-02 2552176]
S2 PDFSFilter;PDFSFilter;c:\windows\system32\DRIVERS\PDFsFilter.sys [2012-08-23 83224]
S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-10-23 2848168]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2012-10-23 11270656]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2012-10-23 546304]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
S3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 XENfiltv;XENfiltv;c:\windows\system32\drivers\XENfiltv.sys [2009-07-31 25600]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-10-29 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-29 15:53]
.
2012-10-30 c:\windows\Tasks\AutoKMS.job
- c:\windows\AutoKMS\AutoKMS.exe [2012-10-23 18:19]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2012-03-07 4081008]
"OODefragTray"="c:\program files\OO Software\Defrag\oodtray.exe" [2012-10-02 7060848]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2011-03-15 499608]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 10.0.0.138
DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} - hxxp://ccfiles.creative.com/Web/softwar ... TSUEng.cab
FF - ProfilePath - c:\users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\ffjv34gb.default\
FF - ExtSQL: 2012-10-14 19:28; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\ffjv34gb.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF - ExtSQL: 2012-10-20 15:13; {c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}; c:\users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\ffjv34gb.default\extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi
FF - ExtSQL: 2012-10-25 14:41; web2pdfextension@web2pdf.adobedotcom; c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
BHO-{3706EE7C-3CAD-445D-8A43-03EBC3B75908} - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System*]
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
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Creative\Shared Files\CTAudSvc.exe
.
**************************************************************************
.
Celkový čas: 2012-10-30 14:36:29 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-10-30 13:36
.
Před spuštěním: 193 951 330 304 bytes free
Po spuštění: 193 801 318 400 bytes free
.
- - End Of File - - 67B6F91CF02D632466DE8836B1695DBB

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod memphisto » 30 říj 2012 17:59

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

KillAll::
Folder::
c:\windows\AutoKMS
c:\program files (x86)\Skype\Updater

Driver::
SkypeUpdate

File::
c:\windows\Tasks\AutoKMS.job

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upus.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu

Toto otestuj na Virustotal
c:\windows\System32\autoconv.exe
c:\windows\ipuninst.exe


Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/40 , nebo 1/40. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
Clorky
Moderátor / člen HW týmu
Master Level 8.5
Master Level 8.5
Příspěvky: 7032
Registrován: květen 10
Bydliště: Moravskoslezský kraj
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod Clorky » 30 říj 2012 20:51

autoconv.exe 0 / 44
ipuninst.exe 0 / 44

Udělám ten CFScript.

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod memphisto » 31 říj 2012 10:11

Tak šup :-)
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
Clorky
Moderátor / člen HW týmu
Master Level 8.5
Master Level 8.5
Příspěvky: 7032
Registrován: květen 10
Bydliště: Moravskoslezský kraj
Pohlaví: Muž
Stav:
Offline

Re: Několik problémů, prosím o kontrolu :-(

Příspěvekod Clorky » 31 říj 2012 13:22

Tady to je, omlouvám se, že to nešlo dříve.

ComboFix 12-10-31.03 - Petr 31.10.2012 13:16:25.2.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1033.18.4094.2783 [GMT 1:00]
Spuštěný z: c:\users\Petr\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Petr\Desktop\CFScript.txt
AV: ESET NOD32 Antivirus 5.2 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 5.2 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\windows\Tasks\AutoKMS.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\windows\AutoKMS
c:\windows\AutoKMS\AutoKMS.exe
c:\windows\AutoKMS\AutoKMS.ini
c:\windows\AutoKMS\AutoKMS.log
c:\windows\Tasks\AutoKMS.job
.
Nakažená kopie c:\windows\System32\autoconv.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\winsxs\amd64_microsoft-windows-convert_31bf3856ad364e35_6.1.7601.17514_none_fafb502abef1be40\autoconv.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-09-28 do 2012-10-31 )))))))))))))))))))))))))))))))
.
.
2012-10-31 12:18 . 2012-10-31 12:18 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-10-30 15:39 . 2012-10-30 15:39 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7B04CCB9-51FD-45CC-838F-6FF6306912B7}\offreg.dll
2012-10-30 13:08 . 2012-10-12 07:19 9291768 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7B04CCB9-51FD-45CC-838F-6FF6306912B7}\mpengine.dll
2012-10-29 15:57 . 2012-07-01 22:15 4102656 ----a-w- c:\windows\SysWow64\x264vfw.dll
2012-10-29 15:57 . 2011-12-07 17:32 216064 ----a-w- c:\windows\SysWow64\lagarith.dll
2012-10-29 15:57 . 2011-06-24 14:44 243200 ----a-w- c:\windows\SysWow64\xvidvfw.dll
2012-10-29 15:57 . 2011-06-24 14:28 650752 ----a-w- c:\windows\SysWow64\xvidcore.dll
2012-10-29 15:57 . 2004-05-18 18:16 39936 ----a-w- c:\windows\SysWow64\huffyuv.dll
2012-10-29 15:57 . 2012-06-09 17:21 178688 ----a-w- c:\windows\SysWow64\unrar.dll
2012-10-29 15:57 . 2011-12-21 17:14 151552 ----a-w- c:\windows\SysWow64\ac3acm.acm
2012-10-29 15:57 . 2012-10-24 18:00 112640 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2012-10-29 15:57 . 2012-10-29 15:57 -------- d-----w- c:\program files (x86)\K-Lite Codec Pack
2012-10-29 15:53 . 2012-10-29 15:53 73656 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-10-29 15:53 . 2012-10-29 15:53 696760 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-10-29 14:28 . 2012-10-29 14:28 -------- d-----w- c:\program files (x86)\Audacity
2012-10-29 14:20 . 2012-10-29 14:20 -------- d-----w- c:\programdata\Malwarebytes
2012-10-29 14:20 . 2012-10-29 14:20 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-10-29 14:20 . 2012-09-29 18:54 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-10-28 13:15 . 2006-09-28 15:05 2414360 ----a-w- c:\windows\SysWow64\d3dx9_31.dll
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\programdata\ATI
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\program files (x86)\AMD AVT
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\program files (x86)\AMD APP
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\program files\Common Files\ATI Technologies
2012-10-28 12:04 . 2012-10-28 12:04 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2012-10-28 12:02 . 2012-10-28 12:02 -------- d-----w- c:\program files (x86)\ATI Technologies
2012-10-28 12:02 . 2012-10-28 12:04 -------- d-----w- c:\program files\ATI Technologies
2012-10-28 12:02 . 2012-10-28 12:02 -------- d-----w- c:\program files\ATI
2012-10-28 11:42 . 2012-10-28 11:42 -------- d-----w- C:\AMD
2012-10-28 11:40 . 2012-10-28 11:40 -------- d-----w- c:\program files (x86)\Full Uninstall
2012-10-26 11:35 . 2012-10-26 19:32 214520 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2012-10-25 20:04 . 2012-10-25 20:04 -------- d-----w- c:\program files (x86)\TeamViewer
2012-10-25 17:30 . 2012-10-25 17:30 -------- d-----w- c:\programdata\RELOADED
2012-10-25 13:33 . 2012-10-25 13:33 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2012-10-25 11:49 . 2012-10-25 11:49 52736 ----a-w- c:\windows\ipuninst.exe
2012-10-25 05:43 . 2012-10-25 05:43 -------- d-----w- c:\windows\Sun
2012-10-24 20:53 . 2012-10-24 20:53 -------- d-----w- c:\program files (x86)\WhatPulse
2012-10-24 13:13 . 2012-10-28 12:04 -------- d-----w- c:\programdata\AMD
2012-10-23 20:51 . 2012-10-23 20:51 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2012-10-23 20:49 . 2012-08-22 18:12 950128 ----a-w- c:\windows\system32\drivers\ndis.sys
2012-10-23 20:49 . 2012-07-04 20:26 41472 ----a-w- c:\windows\system32\drivers\RNDISMP.sys
2012-10-23 20:49 . 2012-08-02 17:58 574464 ----a-w- c:\windows\system32\d3d10level9.dll
2012-10-23 20:49 . 2012-08-02 16:57 490496 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2012-10-23 20:49 . 2012-08-21 21:01 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2012-10-23 18:08 . 2012-10-23 18:08 -------- d-----w- c:\windows\PCHEALTH
2012-10-23 18:05 . 2012-10-23 18:05 -------- d-----w- c:\program files\Microsoft Office
2012-10-23 18:04 . 2012-10-23 18:04 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2012-10-23 18:04 . 2012-10-24 12:55 -------- d-----w- c:\programdata\Microsoft Help
2012-10-23 03:51 . 2012-10-23 03:51 11270656 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-10-23 03:21 . 2012-10-23 03:21 70144 ----a-w- c:\windows\system32\coinst_9.01.8.dll
2012-10-23 03:15 . 2012-10-23 03:15 163840 ----a-w- c:\windows\system32\atiapfxx.exe
2012-10-23 03:13 . 2012-10-23 03:13 51200 ----a-w- c:\windows\system32\aticalrt64.dll
2012-10-23 03:13 . 2012-10-23 03:13 46080 ----a-w- c:\windows\SysWow64\aticalrt.dll
2012-10-23 03:13 . 2012-10-23 03:13 23435776 ----a-w- c:\windows\system32\atio6axx.dll
2012-10-23 03:13 . 2012-10-23 03:13 44544 ----a-w- c:\windows\system32\aticalcl64.dll
2012-10-23 03:13 . 2012-10-23 03:13 44032 ----a-w- c:\windows\SysWow64\aticalcl.dll
2012-10-23 03:13 . 2012-10-23 03:13 16082944 ----a-w- c:\windows\system32\aticaldd64.dll
2012-10-23 03:09 . 2012-10-23 03:09 13703168 ----a-w- c:\windows\SysWow64\aticaldd.dll
2012-10-23 02:59 . 2012-10-23 02:59 1136640 ----a-w- c:\windows\system32\aticfx64.dll
2012-10-23 02:57 . 2012-10-23 02:57 6678528 ----a-w- c:\windows\SysWow64\atidxx32.dll
2012-10-23 02:56 . 2012-10-23 02:56 18957824 ----a-w- c:\windows\SysWow64\atioglxx.dll
2012-10-23 02:52 . 2012-10-23 02:52 442368 ----a-w- c:\windows\system32\atidemgy.dll
2012-10-23 02:52 . 2012-10-23 02:52 548864 ----a-w- c:\windows\system32\atieclxx.exe
2012-10-23 02:51 . 2012-10-23 02:51 240640 ----a-w- c:\windows\system32\atiesrxx.exe
2012-10-23 02:50 . 2012-10-23 02:50 120320 ----a-w- c:\windows\system32\atitmm64.dll
2012-10-23 02:49 . 2012-10-23 02:49 21504 ----a-w- c:\windows\system32\atimuixx.dll
2012-10-23 02:49 . 2012-10-23 02:49 59392 ----a-w- c:\windows\system32\atiedu64.dll
2012-10-23 02:49 . 2012-10-23 02:49 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll
2012-10-23 02:40 . 2012-10-23 02:40 7370240 ----a-w- c:\windows\system32\atidxx64.dll
2012-10-23 02:39 . 2012-10-23 02:39 6778880 ----a-w- c:\windows\system32\atiumd64.dll
2012-10-23 02:28 . 2012-10-23 02:28 618496 ----a-w- c:\windows\system32\atiadlxx.dll
2012-10-23 02:28 . 2012-10-23 02:28 421888 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2012-10-23 02:28 . 2012-10-23 02:28 17920 ----a-w- c:\windows\system32\atig6pxx.dll
2012-10-23 02:27 . 2012-10-23 02:27 14848 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2012-10-23 02:27 . 2012-10-23 02:27 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-10-23 02:27 . 2012-10-23 02:27 41984 ----a-w- c:\windows\system32\atig6txx.dll
2012-10-23 02:27 . 2012-10-23 02:27 33280 ----a-w- c:\windows\SysWow64\atigktxx.dll
2012-10-23 02:27 . 2012-10-23 02:27 546304 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-10-23 02:25 . 2012-10-23 02:25 109568 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2012-10-23 02:25 . 2012-10-23 02:25 104448 ----a-w- c:\windows\system32\atiu9p64.dll
2012-10-23 02:24 . 2012-10-23 02:24 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-10-23 01:44 . 2012-10-23 01:44 4674048 ----a-w- c:\windows\system32\atiumd6a.dll
2012-10-23 01:24 . 2012-10-23 01:24 79360 ----a-w- c:\windows\system32\amdave64.dll
2012-10-23 01:24 . 2012-10-23 01:24 78336 ----a-w- c:\windows\SysWow64\amdave32.dll
2012-10-23 01:24 . 2012-10-23 01:24 74240 ----a-w- c:\windows\system32\atisamu64.dll
2012-10-23 01:24 . 2012-10-23 01:24 71168 ----a-w- c:\windows\SysWow64\atisamu32.dll
2012-10-23 01:24 . 2012-10-23 01:24 56320 ----a-w- c:\windows\system32\atimpc64.dll
2012-10-23 01:24 . 2012-10-23 01:24 56320 ----a-w- c:\windows\system32\amdpcom64.dll
2012-10-23 01:23 . 2012-10-23 01:23 56832 ----a-w- c:\windows\SysWow64\atimpc32.dll
2012-10-23 01:23 . 2012-10-23 01:23 56832 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2012-10-22 21:45 . 2012-10-22 21:45 222720 ----a-w- c:\windows\system32\clinfo.exe
2012-10-22 21:45 . 2012-10-22 21:45 76288 ----a-w- c:\windows\system32\OpenVideo64.dll
2012-10-22 21:45 . 2012-10-22 21:45 65536 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2012-10-22 21:45 . 2012-10-22 21:45 64512 ----a-w- c:\windows\system32\OVDecode64.dll
2012-10-22 21:44 . 2012-10-22 21:44 56320 ----a-w- c:\windows\SysWow64\OVDecode.dll
2012-10-22 21:44 . 2012-10-22 21:44 34523136 ----a-w- c:\windows\system32\amdocl64.dll
2012-10-22 21:40 . 2012-10-22 21:40 28737536 ----a-w- c:\windows\SysWow64\amdocl.dll
2012-10-22 21:36 . 2012-10-22 21:36 54784 ----a-w- c:\windows\system32\OpenCL.dll
2012-10-22 21:36 . 2012-10-22 21:36 50176 ----a-w- c:\windows\SysWow64\OpenCL.dll
2012-10-21 15:31 . 2012-10-21 15:31 314016 ----a-w- c:\windows\system32\drivers\atksgt.sys
2012-10-21 15:31 . 2012-10-21 15:31 43680 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2012-10-21 15:30 . 2012-10-25 13:33 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2012-10-20 20:16 . 2012-10-20 20:24 -------- d-----w- c:\program files (x86)\Common Files\Blizzard Entertainment
2012-10-20 20:16 . 2012-10-20 20:16 -------- d-----w- c:\program files (x86)\World of Warcraft
2012-10-20 15:43 . 2012-10-20 15:43 -------- d-----w- c:\program files (x86)\VST
2012-10-20 15:43 . 2012-10-20 15:43 -------- d-----w- c:\programdata\Acoustica
2012-10-20 12:37 . 2012-10-20 12:37 -------- d-----w- c:\programdata\Ubisoft
2012-10-20 12:29 . 2012-10-26 19:29 214520 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2012-10-20 12:29 . 2012-10-20 12:29 -------- d-----w- c:\program files (x86)\Ubisoft
2012-10-19 20:39 . 2012-10-25 12:44 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2012-10-19 20:38 . 2012-10-19 20:38 -------- d-----w- c:\program files\NVIDIA Corporation
2012-10-19 20:38 . 2012-10-19 20:37 151552 ----a-w- c:\windows\SysWow64\nvRegDev.dll
2012-10-19 20:38 . 2012-10-19 20:37 61440 ----a-w- c:\windows\SysWow64\nvPhotoshopUtil.dll
2012-10-19 20:38 . 2012-10-19 20:37 40960 ----a-w- c:\windows\SysWow64\nvISWOW64.dll
2012-10-19 20:35 . 2012-10-19 20:37 -------- d-----w- c:\program files\Common Files\Adobe
2012-10-19 20:33 . 2012-10-19 20:33 -------- d-----w- c:\program files (x86)\Common Files\Adobe AIR
2012-10-19 20:29 . 2012-10-25 12:43 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2012-10-18 17:41 . 2012-10-18 17:41 -------- d-----w- C:\Fraps
2012-10-17 17:47 . 2012-10-19 22:27 -------- d-----w- C:\Textures Backup
2012-10-16 19:29 . 2012-10-16 19:29 -------- d-----w- c:\program files\NTCore
2012-10-16 12:09 . 2012-10-16 12:09 -------- d-----w- c:\program files (x86)\Common Files\Chameleon Manager
2012-10-16 12:09 . 2012-10-16 12:09 -------- d-----w- c:\program files (x86)\Chameleon Shutdown
2012-10-15 13:58 . 2012-10-15 13:58 -------- d-----w- c:\windows\SysWow64\Wat
2012-10-15 13:58 . 2012-10-15 13:58 -------- d-----w- c:\windows\system32\Wat
2012-10-15 13:42 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-10-15 01:15 . 2012-10-14 20:18 -------- d-----w- c:\windows\Panther
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-23 03:54 . 2012-07-28 04:09 5623976 ----a-w- c:\windows\SysWow64\atiumdag.dll
2012-10-23 03:00 . 2012-07-28 02:15 948224 ----a-w- c:\windows\SysWow64\aticfx32.dll
2012-10-23 02:25 . 2012-07-28 01:13 130048 ----a-w- c:\windows\system32\atiuxp64.dll
2012-10-23 02:25 . 2012-07-28 01:13 83968 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2012-10-23 01:34 . 2012-07-28 01:32 3862528 ----a-w- c:\windows\SysWow64\atiumdva.dll
2012-09-11 13:24 . 2012-09-11 13:24 126232 ----a-w- c:\windows\system32\drivers\DefragFs.sys
2012-09-06 16:05 . 2012-09-06 16:05 3953152 ----a-w- c:\windows\system32\SlotMaximizerBe.dll
2012-09-06 16:05 . 2012-09-06 16:05 2839552 ----a-w- c:\windows\SysWow64\SlotMaximizerBe.dll
2012-09-06 16:05 . 2012-09-06 16:05 198144 ----a-w- c:\windows\system32\SlotMaximizerAg.dll
2012-09-06 16:05 . 2012-09-06 16:05 161792 ----a-w- c:\windows\SysWow64\SlotMaximizerAg.dll
2012-09-05 08:12 . 2012-09-05 08:12 96768 ----a-w- c:\windows\system32\fsutil.exe
2012-09-05 08:12 . 2012-09-05 08:12 91648 ----a-w- c:\windows\system32\drivers\USBSTOR.SYS
2012-09-05 08:12 . 2012-09-05 08:12 74240 ----a-w- c:\windows\SysWow64\fsutil.exe
2012-09-05 08:12 . 2012-09-05 08:12 410496 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2012-09-05 08:12 . 2012-09-05 08:12 27008 ----a-w- c:\windows\system32\drivers\amdxata.sys
2012-09-05 08:12 . 2012-09-05 08:12 2565632 ----a-w- c:\windows\system32\esent.dll
2012-09-05 08:12 . 2012-09-05 08:12 189824 ----a-w- c:\windows\system32\drivers\storport.sys
2012-09-05 08:12 . 2012-09-05 08:12 1699328 ----a-w- c:\windows\SysWow64\esent.dll
2012-09-05 08:12 . 2012-09-05 08:12 166272 ----a-w- c:\windows\system32\drivers\nvstor.sys
2012-09-05 08:12 . 2012-09-05 08:12 148352 ----a-w- c:\windows\system32\drivers\nvraid.sys
2012-09-05 08:12 . 2012-09-05 08:12 107904 ----a-w- c:\windows\system32\drivers\amdsata.sys
2012-09-05 08:11 . 2012-09-05 08:11 98816 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2012-09-05 08:11 . 2012-09-05 08:11 7936 ----a-w- c:\windows\system32\drivers\usbd.sys
2012-09-05 08:11 . 2012-09-05 08:11 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys
2012-09-05 08:11 . 2012-09-05 08:11 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys
2012-09-05 08:11 . 2012-09-05 08:11 325120 ----a-w- c:\windows\system32\drivers\usbport.sys
2012-09-05 08:11 . 2012-09-05 08:11 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2012-09-05 08:11 . 2012-09-05 08:11 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys
2012-09-05 08:11 . 2012-09-05 08:11 503808 ----a-w- c:\windows\system32\srcore.dll
2012-09-05 08:11 . 2012-09-05 08:11 43008 ----a-w- c:\windows\SysWow64\srclient.dll
2012-09-05 08:11 . 2012-09-05 08:11 514560 ----a-w- c:\windows\SysWow64\qdvd.dll
2012-09-05 08:11 . 2012-09-05 08:11 366592 ----a-w- c:\windows\system32\qdvd.dll
2012-09-05 08:11 . 2012-09-05 08:11 209920 ----a-w- c:\windows\system32\profsvc.dll
2012-09-05 08:11 . 2012-09-05 08:11 3216384 ----a-w- c:\windows\system32\msi.dll
2012-09-05 08:11 . 2012-09-05 08:11 2342400 ----a-w- c:\windows\SysWow64\msi.dll
2012-09-05 08:10 . 2012-09-05 08:10 515584 ----a-w- c:\windows\system32\timedate.cpl
2012-09-05 08:10 . 2012-09-05 08:10 478720 ----a-w- c:\windows\SysWow64\timedate.cpl
2012-09-05 08:10 . 2012-09-05 08:10 751104 ----a-w- c:\windows\system32\win32spl.dll
2012-09-05 08:10 . 2012-09-05 08:10 67072 ----a-w- c:\windows\splwow64.exe
2012-09-05 08:10 . 2012-09-05 08:10 559104 ----a-w- c:\windows\system32\spoolsv.exe
2012-09-05 08:10 . 2012-09-05 08:10 492032 ----a-w- c:\windows\SysWow64\win32spl.dll
2012-09-05 08:10 . 2012-09-05 08:10 509952 ----a-w- c:\windows\system32\ntshrui.dll
2012-09-05 08:10 . 2012-09-05 08:10 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll
2012-09-05 08:10 . 2012-09-05 08:10 199680 ----a-w- c:\windows\system32\xmllite.dll
2012-09-05 08:10 . 2012-09-05 08:10 86528 ----a-w- c:\windows\SysWow64\SearchFilterHost.exe
2012-09-05 08:10 . 2012-09-05 08:10 778752 ----a-w- c:\windows\system32\mssvp.dll
2012-09-05 08:10 . 2012-09-05 08:10 75264 ----a-w- c:\windows\system32\msscntrs.dll
2012-09-05 08:10 . 2012-09-05 08:10 666624 ----a-w- c:\windows\SysWow64\mssvp.dll
2012-09-05 08:10 . 2012-09-05 08:10 59392 ----a-w- c:\windows\SysWow64\msscntrs.dll
2012-09-05 08:10 . 2012-09-05 08:10 591872 ----a-w- c:\windows\system32\SearchIndexer.exe
2012-09-05 08:10 . 2012-09-05 08:10 491520 ----a-w- c:\windows\system32\mssph.dll
2012-09-05 08:10 . 2012-09-05 08:10 427520 ----a-w- c:\windows\SysWow64\SearchIndexer.exe
2012-09-05 08:10 . 2012-09-05 08:10 337408 ----a-w- c:\windows\SysWow64\mssph.dll
2012-09-05 08:10 . 2012-09-05 08:10 288256 ----a-w- c:\windows\system32\mssphtb.dll
2012-09-05 08:10 . 2012-09-05 08:10 249856 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2012-09-05 08:10 . 2012-09-05 08:10 2315776 ----a-w- c:\windows\system32\tquery.dll
2012-09-05 08:10 . 2012-09-05 08:10 2223616 ----a-w- c:\windows\system32\mssrch.dll
2012-09-05 08:10 . 2012-09-05 08:10 197120 ----a-w- c:\windows\SysWow64\mssphtb.dll
2012-09-05 08:10 . 2012-09-05 08:10 164352 ----a-w- c:\windows\SysWow64\SearchProtocolHost.exe
2012-09-05 08:10 . 2012-09-05 08:10 1549312 ----a-w- c:\windows\SysWow64\tquery.dll
2012-09-05 08:10 . 2012-09-05 08:10 1401344 ----a-w- c:\windows\SysWow64\mssrch.dll
2012-09-05 08:10 . 2012-09-05 08:10 113664 ----a-w- c:\windows\system32\SearchFilterHost.exe
2012-09-05 08:09 . 2012-09-05 08:09 27520 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2012-09-05 08:09 . 2012-09-05 08:09 870912 ----a-w- c:\windows\SysWow64\XpsPrint.dll
2012-09-05 08:09 . 2012-09-05 08:09 1465344 ----a-w- c:\windows\system32\XpsPrint.dll
2012-09-05 08:09 . 2012-09-05 08:09 2871808 ----a-w- c:\windows\explorer.exe
2012-09-05 08:09 . 2012-09-05 08:09 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2012-09-05 08:09 . 2012-09-05 08:09 476160 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2012-09-05 08:09 . 2012-09-05 08:09 288256 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2012-09-05 08:09 . 2012-09-05 08:09 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2012-09-05 08:09 . 2012-09-05 08:09 31232 ----a-w- c:\windows\system32\prevhost.exe
2012-09-05 08:09 . 2012-09-05 08:09 902656 ----a-w- c:\windows\system32\d2d1.dll
2012-09-05 08:09 . 2012-09-05 08:09 739840 ----a-w- c:\windows\SysWow64\d2d1.dll
2012-09-05 08:09 . 2012-09-05 08:09 1139200 ----a-w- c:\windows\system32\FntCache.dll
2012-09-05 08:09 . 2012-09-05 08:09 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2012-09-05 08:09 . 2012-09-05 08:09 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2012-09-05 08:08 . 2012-09-05 08:08 197120 ----a-w- c:\windows\system32\d3d10_1.dll
2012-09-05 08:08 . 2012-09-05 08:08 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2012-09-05 08:07 . 2012-09-05 08:07 64512 ----a-w- c:\windows\SysWow64\devobj.dll
2012-09-05 08:07 . 2012-09-05 08:07 44544 ----a-w- c:\windows\SysWow64\devrtl.dll
2012-09-05 08:07 . 2012-09-05 08:07 404480 ----a-w- c:\windows\system32\umpnpmgr.dll
2012-09-05 08:07 . 2012-09-05 08:07 252928 ----a-w- c:\windows\SysWow64\drvinst.exe
2012-09-05 08:07 . 2012-09-05 08:07 145920 ----a-w- c:\windows\SysWow64\cfgmgr32.dll
2012-09-05 08:07 . 2012-09-05 08:07 642944 ----a-w- c:\windows\system32\winload.efi
2012-09-05 08:07 . 2012-09-05 08:07 605552 ----a-w- c:\windows\system32\winload.exe
2012-09-05 08:07 . 2012-09-05 08:07 566208 ----a-w- c:\windows\system32\winresume.efi
2012-09-05 08:07 . 2012-09-05 08:07 518672 ----a-w- c:\windows\system32\winresume.exe
2012-09-05 08:07 . 2012-09-05 08:07 20352 ----a-w- c:\windows\system32\kdusb.dll
2012-09-05 08:07 . 2012-09-05 08:07 19328 ----a-w- c:\windows\system32\kd1394.dll
2012-09-05 08:07 . 2012-09-05 08:07 17792 ----a-w- c:\windows\system32\kdcom.dll
2012-09-05 08:07 . 2012-09-05 08:07 3148800 ----a-w- c:\windows\system32\win32k.sys
2012-09-05 08:07 . 2012-09-05 08:07 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll
2012-09-05 08:07 . 2012-09-05 08:07 2048 ----a-w- c:\windows\system32\msxml3r.dll
2012-09-05 08:07 . 2012-09-05 08:07 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-09-05 08:07 . 2012-09-05 08:07 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-09-05 08:07 . 2012-09-05 08:07 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-09-05 08:07 . 2012-09-05 08:07 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-09-05 08:07 . 2012-09-05 08:07 956928 ----a-w- c:\windows\system32\localspl.dll
2012-09-05 08:06 . 2012-09-05 08:06 73216 ----a-w- c:\windows\system32\netapi32.dll
2012-09-05 08:06 . 2012-09-05 08:06 59392 ----a-w- c:\windows\system32\browcli.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\program files (x86)\uTorrent\uTorrent.exe" [2012-10-14 963984]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-08-28 3671904]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
"WhatPulse"="c:\program files (x86)\WhatPulse\WhatPulse.exe" [2011-11-15 3990528]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2012-01-03 815512]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-10-22 642216]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ PDBoot.exe\0autocheck autochk *\0OODBS
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-09 123856]
R3 2310_00;2310_00;c:\windows\system32\drivers\2310_00.sys [2009-06-12 170528]
R3 272x_1x;272x_1x;c:\windows\system32\drivers\272x_1x.sys [2012-04-24 612672]
R3 274x_3x;274x_3x;c:\windows\system32\drivers\274x_3x.sys [2012-04-24 240960]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-29 250808]
R3 ahcix64s;ahcix64s;c:\windows\system32\drivers\ahcix64s.sys [2011-12-29 292136]
R3 amd_sata;amd_sata;c:\windows\system32\drivers\amd_sata.sys [2012-04-11 82560]
R3 arcm_a64;arcm_a64;c:\windows\system32\drivers\arcm_a64.sys [2009-11-09 52768]
R3 asahci64;asahci64;c:\windows\system32\drivers\asahci64.sys [2012-01-06 49760]
R3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2012-10-14 79360]
R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-10-14 79360]
R3 DC133;DC133;c:\windows\system32\drivers\DC133.sys [2011-05-02 39320]
R3 DC150;DC150;c:\windows\system32\drivers\DC150.sys [2011-05-02 39832]
R3 DC154;DC154;c:\windows\system32\drivers\DC154.sys [2011-05-02 48136]
R3 DC300e;DC300e;c:\windows\system32\drivers\DC300e.sys [2011-05-02 40344]
R3 DC324e;DC324e;c:\windows\system32\drivers\DC324e.sys [2011-05-02 49752]
R3 DC4300;DC4300;c:\windows\system32\drivers\DC4300.sys [2011-05-02 48360]
R3 DC600e;DC600e;c:\windows\system32\drivers\DC600e.sys [2011-05-02 40744]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
R3 hptiop;hptiop;c:\windows\system32\drivers\hptiop.sys [2009-05-25 17440]
R3 hptmv;hptmv;c:\windows\system32\drivers\hptmv.sys [2006-09-18 93472]
R3 hptmv6;hptmv6;c:\windows\system32\drivers\hptmv6.sys [2007-11-01 152096]
R3 iaStorA;iaStorA;c:\windows\system32\drivers\iaStorA.sys [2012-06-20 578008]
R3 iaStorS;iaStorS;c:\windows\system32\drivers\iaStorS.sys [2012-06-29 651224]
R3 ManyCam;ManyCam Virtual Webcam;c:\windows\system32\DRIVERS\mcvidrv_x64.sys [2012-10-11 44928]
R3 mcaudrv_simple;ManyCam Virtual Microphone;c:\windows\system32\drivers\mcaudrv_x64.sys [2012-10-11 29696]
R3 megasas2;megasas2;c:\windows\system32\drivers\megasas2.sys [2012-02-28 51496]
R3 megasr1;megasr1;c:\windows\system32\drivers\MegaSR1.sys [2009-04-16 461320]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-10-27 115168]
R3 mv61xx;mv61xx;c:\windows\system32\drivers\mv61xx.sys [2011-05-06 182576]
R3 mv91cons;mv91cons;c:\windows\system32\drivers\mv91cons.sys [2012-02-23 27440]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 Pnp680;Pnp680;c:\windows\system32\drivers\pnp680.sys [2007-11-13 80424]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-21 20992]
R3 RivaTuner64;RivaTuner64;c:\program files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [2012-10-20 19952]
R3 rr172x;rr172x;c:\windows\system32\drivers\rr172x.sys [2007-11-01 124448]
R3 rr174x;rr174x;c:\windows\system32\drivers\rr174x.sys [2007-11-01 159264]
R3 rr2210;rr2210;c:\windows\system32\drivers\rr2210.sys [2007-11-01 153632]
R3 rr232x;rr232x;c:\windows\system32\drivers\rr232x.sys [2008-05-05 152096]
R3 rr2340;rr2340;c:\windows\system32\drivers\rr2340.sys [2009-12-31 162400]
R3 rr2522;rr2522;c:\windows\system32\drivers\rr2522.sys [2009-12-31 168032]
R3 rr276x;rr276x;c:\windows\system32\drivers\rr276x.sys [2012-04-24 241472]
R3 rr278x;rr278x;c:\windows\system32\drivers\rr278x.sys [2012-04-24 240960]
R3 rr62x;rr62x;c:\windows\system32\drivers\rr62x.sys [2010-06-16 156256]
R3 SI3112r;SI3112r;c:\windows\system32\drivers\SI3112r.sys [2007-02-01 164656]
R3 SI3114;SI3114;c:\windows\system32\drivers\SI3114.sys [2006-11-10 99120]
R3 SI3124;SI3124;c:\windows\system32\drivers\SI3124.sys [2006-11-02 113456]
R3 Si3124r5;Si3124r5;c:\windows\system32\drivers\Si3124r5.sys [2006-09-20 334640]
R3 Si3531;Si3531;c:\windows\system32\drivers\Si3531.sys [2009-02-09 333864]
R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [2010-11-21 88960]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2010-11-21 34816]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 viamrx64;viamrx64;c:\windows\system32\drivers\viamrx64.sys [2010-12-02 161904]
R3 videX64;videX64;c:\windows\system32\drivers\videX64.sys [2010-02-11 15000]
R3 vmci;vmci;c:\windows\system32\drivers\vmci.sys [2012-01-17 116336]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-10-15 1255736]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [2010-11-01 14544]
S0 amd_xata;amd_xata;c:\windows\system32\drivers\amd_xata.sys [2012-04-11 42624]
S0 DC3410;DC3410;c:\windows\system32\drivers\DC3410.sys [2011-05-02 48328]
S0 iaStorF;iaStorF;c:\windows\system32\drivers\iaStorF.sys [2012-06-29 26072]
S0 mvs91xx;mvs91xx;c:\windows\system32\drivers\mvs91xx.sys [2012-02-23 317744]
S0 xfiltx64;VIA SATA IDE Hot-plug Driver;c:\windows\system32\drivers\xfiltx64.sys [2010-02-11 26776]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-14 283200]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2012-03-14 209768]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2012-03-14 148528]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-10-23 240640]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2012-03-07 913144]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2012-03-14 137144]
S2 OODefragAgent;O&O Defrag;c:\program files\OO Software\Defrag\oodag.exe [2012-10-02 2552176]
S2 PDFSFilter;PDFSFilter;c:\windows\system32\DRIVERS\PDFsFilter.sys [2012-08-23 83224]
S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-10-23 2848168]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2012-10-23 11270656]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2012-10-23 546304]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 XENfiltv;XENfiltv;c:\windows\system32\drivers\XENfiltv.sys [2009-07-31 25600]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-10-30 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-29 15:53]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2012-03-07 4081008]
"OODefragTray"="c:\program files\OO Software\Defrag\oodtray.exe" [2012-10-02 7060848]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2011-03-15 499608]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 10.0.0.138
DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} - hxxp://ccfiles.creative.com/Web/softwar ... TSUEng.cab
FF - ProfilePath - c:\users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\ffjv34gb.default\
FF - ExtSQL: 2012-10-14 19:28; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\ffjv34gb.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF - ExtSQL: 2012-10-20 15:13; {c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}; c:\users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\ffjv34gb.default\extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi
FF - ExtSQL: 2012-10-25 14:41; web2pdfextension@web2pdf.adobedotcom; c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
BHO-{3706EE7C-3CAD-445D-8A43-03EBC3B75908} - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System*]
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
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Creative\Shared Files\CTAudSvc.exe
.
**************************************************************************
.
Celkový čas: 2012-10-31 13:22:20 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-10-31 12:22
ComboFix2.txt 2012-10-30 13:36
.
Před spuštěním: 183 492 386 816 bytes free
Po spuštění: 183 251 365 888 bytes free
.
- - End Of File - - 927BFEEC418C6F4B9335BB51993FE2B6


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 103 hostů