kontrola logu PC Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod Orcus » 30 pro 2013 12:46

sanko33 píše:Zdravím co znamená SP3? a kde to stáhnu?

Service Pack 3
http://www.microsoft.com/cs-cz/download ... aspx?id=24

sanko33 píše:Chtěl jsem se zeptat jak odstraním tu modrou barvu z těch ikon? Předem díky

http://pc.poradna.net/q/view/190852-ikony-na-plose

====================================================

Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "

- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Reklama
sanko33
Level 3.5
Level 3.5
Příspěvky: 742
Registrován: březen 10
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod sanko33 » 02 led 2014 12:06

RogueKiller V8.8.0 [Dec 27 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Admin [Práva správce]
Mód : Odebrat -- Datum : 01/02/2014 12:03:04
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ][PUM] HKLM\[...]\SystemRestore : DisableSR (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0xc0000033] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤
-> D:\windows\system32\config\SYSTEM | DRVINFO [Drv - D:] | SYSTEMINFO [Sys - D:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> D:\windows\system32\config\SOFTWARE | DRVINFO [Drv - D:] | SYSTEMINFO [Sys - D:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> D:\windows\system32\config\SECURITY | DRVINFO [Drv - D:] | SYSTEMINFO [Sys - D:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> D:\windows\system32\config\SAM | DRVINFO [Drv - D:] | SYSTEMINFO [Sys - D:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> D:\windows\system32\config\DEFAULT | DRVINFO [Drv - D:] | SYSTEMINFO [Sys - D:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) SAMSUNG SP1213C +++++
--- User ---
[MBR] 01fbe0982fcc9bfeff1feace0c27f2b7
[BSP] 50d215ccc786c0097df0b736ca8ad408 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 14998 Mo
1 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 30716280 | Size: 99488 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_01022014_120304.txt >>
RKreport[0]_S_01022014_120259.txt;RKreport[0]_S_12302013_105123.txt

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod Orcus » 02 led 2014 13:32

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

====================================================

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

sanko33
Level 3.5
Level 3.5
Příspěvky: 742
Registrován: březen 10
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod sanko33 » 03 led 2014 19:57

Přijde mi ,že se mi strašně zpomalil počítat. Sotva otevřu prohlížeč..a na chromu nespustím ani stránky.:/

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod Orcus » 03 led 2014 20:17

Bez logů se nehneme.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

sanko33
Level 3.5
Level 3.5
Příspěvky: 742
Registrován: březen 10
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod sanko33 » 03 led 2014 20:22

20:19:52.0093 1080 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
20:19:56.0171 1080 ============================================================
20:19:56.0187 1080 Current date / time: 2014/01/03 20:19:56.0171
20:19:56.0187 1080 SystemInfo:
20:19:56.0187 1080
20:19:56.0187 1080 OS Version: 5.1.2600 ServicePack: 3.0
20:19:56.0187 1080 Product type: Workstation
20:19:56.0187 1080 ComputerName: ADMIN-2915FAFE7
20:19:56.0187 1080 UserName: Admin
20:19:56.0187 1080 Windows directory: C:\WINDOWS
20:19:56.0218 1080 System windows directory: C:\WINDOWS
20:19:56.0218 1080 Processor architecture: Intel x86
20:19:56.0218 1080 Number of processors: 1
20:19:56.0218 1080 Page size: 0x1000
20:19:56.0218 1080 Boot type: Normal boot
20:19:56.0218 1080 ============================================================
20:19:58.0250 1080 Drive \Device\Harddisk0\DR0 - Size: 0x1BF4290000 (111.82 Gb), SectorSize: 0x200, Cylinders: 0x3904, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
20:19:58.0312 1080 ============================================================
20:19:58.0312 1080 \Device\Harddisk0\DR0:
20:19:58.0312 1080 MBR partitions:
20:19:58.0312 1080 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D4B139
20:19:58.0312 1080 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1D4B1B7, BlocksNum 0xC25038C
20:19:58.0312 1080 ============================================================
20:19:58.0343 1080 C: <-> \Device\Harddisk0\DR0\Partition1
20:19:58.0421 1080 D: <-> \Device\Harddisk0\DR0\Partition2
20:19:58.0421 1080 ============================================================
20:19:58.0421 1080 Initialize success
20:19:58.0421 1080 ============================================================
20:20:01.0625 2276 ============================================================
20:20:01.0625 2276 Scan started
20:20:01.0625 2276 Mode: Manual;
20:20:01.0625 2276 ============================================================
20:20:04.0234 2276 ================ Scan system memory ========================
20:20:04.0234 2276 System memory - ok
20:20:04.0250 2276 ================ Scan services =============================
20:20:04.0562 2276 Abiosdsk - ok
20:20:04.0625 2276 abp480n5 - ok
20:20:04.0671 2276 [ 4FE34F1F3126B61FCC6B2043AA8112C9 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
20:20:04.0703 2276 ACPI - ok
20:20:04.0734 2276 [ AFDFF022A01F0B11C776F0860C3B282F ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
20:20:04.0734 2276 ACPIEC - ok
20:20:04.0828 2276 [ 1BA1AB4141A92EB34DA99F1249CA2D4D ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:20:04.0843 2276 AdobeFlashPlayerUpdateSvc - ok
20:20:04.0875 2276 adpu160m - ok
20:20:04.0953 2276 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
20:20:04.0953 2276 aec - ok
20:20:04.0984 2276 [ 322D0E36693D6E24A2398BEE62A268CD ] AFD C:\WINDOWS\System32\drivers\afd.sys
20:20:04.0984 2276 AFD - ok
20:20:05.0046 2276 Aha154x - ok
20:20:05.0140 2276 aic78u2 - ok
20:20:05.0203 2276 aic78xx - ok
20:20:05.0484 2276 [ F3E15607BA53249C765E36388B332C2F ] ALCXWDM C:\WINDOWS\system32\drivers\ALCXWDM.SYS
20:20:05.0656 2276 ALCXWDM - ok
20:20:05.0734 2276 [ E0A6FA244B8624D78FE5FF6F56A33BAE ] Alerter C:\WINDOWS\system32\alrsvc.dll
20:20:05.0734 2276 Alerter - ok
20:20:05.0781 2276 [ 88842DE939A827577BF24243699AC80A ] ALG C:\WINDOWS\System32\alg.exe
20:20:05.0812 2276 ALG - ok
20:20:05.0859 2276 AliIde - ok
20:20:05.0890 2276 amsint - ok
20:20:05.0937 2276 [ 6B8E7A90E576D4FE308F97C69060A171 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
20:20:05.0984 2276 AppMgmt - ok
20:20:06.0000 2276 asc - ok
20:20:06.0046 2276 asc3350p - ok
20:20:06.0125 2276 asc3550 - ok
20:20:06.0203 2276 [ 74202D5A696A412733B387BD18400E4C ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys
20:20:06.0203 2276 aswFsBlk - ok
20:20:06.0281 2276 [ AA3397F034871DE76A74585774029580 ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
20:20:06.0281 2276 aswMonFlt - ok
20:20:06.0312 2276 [ 9F597676EDA29D6619C5E76F523892D7 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr.sys
20:20:06.0312 2276 aswRdr - ok
20:20:06.0359 2276 [ F385467DF95D0A73775CB3B076B8B969 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
20:20:06.0359 2276 aswRvrt - ok
20:20:06.0437 2276 [ BB27A67D7F465D2720D74B5223DD91E4 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
20:20:06.0468 2276 aswSnx - ok
20:20:06.0531 2276 [ 259E864BFB9268CD7CEFA5849A3B374B ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
20:20:06.0593 2276 aswSP - ok
20:20:06.0625 2276 [ AB499F3325E62E157F8E8302065B1B30 ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys
20:20:06.0625 2276 aswTdi - ok
20:20:06.0656 2276 [ BADA8FD627F1D0E22308211C33F0BDB5 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
20:20:06.0671 2276 aswVmm - ok
20:20:06.0734 2276 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
20:20:06.0734 2276 AsyncMac - ok
20:20:06.0781 2276 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
20:20:06.0781 2276 atapi - ok
20:20:06.0812 2276 Atdisk - ok
20:20:06.0859 2276 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
20:20:06.0875 2276 Atmarpc - ok
20:20:06.0937 2276 [ DE31B88962A8645DBA5A37B993E7B0F1 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
20:20:06.0953 2276 AudioSrv - ok
20:20:07.0015 2276 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
20:20:07.0046 2276 audstub - ok
20:20:07.0156 2276 [ 4D41D30E2FAB3307967C7A0B045DC874 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
20:20:07.0156 2276 avast! Antivirus - ok
20:20:07.0250 2276 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
20:20:07.0265 2276 Beep - ok
20:20:07.0359 2276 [ 19395D092FD85DDC2D9C7729CF5A2AC8 ] BITS C:\WINDOWS\system32\qmgr.dll
20:20:07.0437 2276 BITS - ok
20:20:07.0531 2276 [ 249276D3EF1E74B992299CB96099E4D7 ] Browser C:\WINDOWS\System32\browser.dll
20:20:07.0531 2276 Browser - ok
20:20:07.0562 2276 catchme - ok
20:20:07.0609 2276 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
20:20:07.0609 2276 cbidf2k - ok
20:20:07.0656 2276 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
20:20:07.0656 2276 CCDECODE - ok
20:20:07.0671 2276 cd20xrnt - ok
20:20:07.0734 2276 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
20:20:07.0750 2276 Cdaudio - ok
20:20:07.0765 2276 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
20:20:07.0765 2276 Cdfs - ok
20:20:07.0781 2276 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
20:20:07.0781 2276 Cdrom - ok
20:20:07.0843 2276 Changer - ok
20:20:07.0953 2276 [ E390DC1D7C461D7D56EC53402F329928 ] CiSvc C:\WINDOWS\system32\cisvc.exe
20:20:07.0984 2276 CiSvc - ok
20:20:08.0000 2276 [ 064507A8DFA8C5C7E2FFDDD3E6F424FA ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
20:20:08.0015 2276 ClipSrv - ok
20:20:08.0078 2276 CmdIde - ok
20:20:08.0093 2276 COMSysApp - ok
20:20:08.0203 2276 Cpqarray - ok
20:20:08.0296 2276 [ F3AB0933CBD166D271992F411C27CCAF ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
20:20:08.0312 2276 CryptSvc - ok
20:20:08.0359 2276 dac2w2k - ok
20:20:08.0421 2276 dac960nt - ok
20:20:08.0562 2276 [ C868F3AE15CF71A93F2AA3A32856D839 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
20:20:08.0703 2276 DcomLaunch - ok
20:20:08.0750 2276 [ 8C9A53E285AC5E6704844D0459EC85BE ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
20:20:08.0765 2276 Dhcp - ok
20:20:08.0828 2276 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
20:20:08.0828 2276 Disk - ok
20:20:08.0875 2276 dmadmin - ok
20:20:08.0937 2276 [ DB5FD2BF5B07DC54BFCB3664FF05BD7C ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
20:20:09.0000 2276 dmboot - ok
20:20:09.0046 2276 [ FFF1720AF51171F32F1EAD5CF71F2810 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
20:20:09.0046 2276 dmio - ok
20:20:09.0078 2276 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
20:20:09.0078 2276 dmload - ok
20:20:09.0125 2276 [ 2BFEFE9E865655A76982F050450B9591 ] dmserver C:\WINDOWS\System32\dmserver.dll
20:20:09.0171 2276 dmserver - ok
20:20:09.0203 2276 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
20:20:09.0203 2276 DMusic - ok
20:20:09.0234 2276 [ 0634B791684B84F4A331F3D3536FEEF8 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
20:20:09.0296 2276 Dnscache - ok
20:20:09.0375 2276 [ 4A3E2BD20157A0946751229E92EB8621 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
20:20:09.0390 2276 Dot3svc - ok
20:20:09.0406 2276 dpti2o - ok
20:20:09.0468 2276 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
20:20:09.0468 2276 drmkaud - ok
20:20:09.0515 2276 [ 0887D9C2BE8D940778CAD1E3B85F2A41 ] EapHost C:\WINDOWS\System32\eapsvc.dll
20:20:09.0531 2276 EapHost - ok
20:20:09.0562 2276 [ A2A4912798F2BE706ABADD3D30800D16 ] ERSvc C:\WINDOWS\System32\ersvc.dll
20:20:09.0609 2276 ERSvc - ok
20:20:09.0687 2276 [ F0D2AE69035092BF22DAD6B50FAB85C2 ] Eventlog C:\WINDOWS\system32\services.exe
20:20:09.0843 2276 Eventlog - ok
20:20:09.0921 2276 [ 260C69FD67687B0DC062FC3D31655857 ] EventSystem C:\WINDOWS\system32\es.dll
20:20:09.0937 2276 EventSystem - ok
20:20:09.0984 2276 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
20:20:10.0000 2276 Fastfat - ok
20:20:10.0046 2276 [ B927443008910B412BEC72FC41C1BAD0 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
20:20:10.0203 2276 FastUserSwitchingCompatibility - ok
20:20:10.0234 2276 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
20:20:10.0234 2276 Fdc - ok
20:20:10.0296 2276 [ AC366695A0796560AA37215AD5762AAF ] Fips C:\WINDOWS\system32\drivers\Fips.sys
20:20:10.0312 2276 Fips - ok
20:20:10.0343 2276 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
20:20:10.0343 2276 Flpydisk - ok
20:20:10.0390 2276 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
20:20:10.0421 2276 FltMgr - ok
20:20:10.0484 2276 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:20:10.0484 2276 Fs_Rec - ok
20:20:10.0531 2276 [ 4E664D8541DB4A66B73A24257E322E1F ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
20:20:10.0531 2276 Ftdisk - ok
20:20:10.0609 2276 [ 3A74C423CF6BCCA6982715878F450A3B ] gagp30kx C:\WINDOWS\system32\DRIVERS\gagp30kx.sys
20:20:10.0609 2276 gagp30kx - ok
20:20:10.0671 2276 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
20:20:10.0671 2276 Gpc - ok
20:20:10.0750 2276 [ FCFE31FB75F8A6295B6B0AF87A626282 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
20:20:10.0781 2276 helpsvc - ok
20:20:10.0812 2276 [ 00E25EE90166B3E1BE6E74AEBF858306 ] HidServ C:\WINDOWS\System32\hidserv.dll
20:20:10.0859 2276 HidServ - ok
20:20:10.0875 2276 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] hidusb C:\WINDOWS\system32\DRIVERS\hidusb.sys
20:20:10.0921 2276 hidusb - ok
20:20:10.0984 2276 [ 7A6B320928F86BC851530D63C82965D9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
20:20:11.0031 2276 hkmsvc - ok
20:20:11.0078 2276 hpn - ok
20:20:11.0140 2276 [ F6AACF5BCE2893E0C1754AFEB672E5C9 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
20:20:11.0171 2276 HTTP - ok
20:20:11.0234 2276 [ 58FE2F2DA3BC5573F4A35B3760D3125F ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
20:20:11.0406 2276 HTTPFilter - ok
20:20:11.0421 2276 i2omgmt - ok
20:20:11.0500 2276 i2omp - ok
20:20:11.0578 2276 [ C528E27945367191E7BAE364930B6932 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
20:20:11.0578 2276 i8042prt - ok
20:20:11.0656 2276 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
20:20:11.0656 2276 Imapi - ok
20:20:11.0687 2276 [ F7B93AAFAD33B2320954C17E26C8D361 ] ImapiService C:\WINDOWS\system32\imapi.exe
20:20:11.0718 2276 ImapiService - ok
20:20:11.0812 2276 ini910u - ok
20:20:11.0859 2276 IntelIde - ok
20:20:11.0921 2276 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
20:20:11.0953 2276 Ip6Fw - ok
20:20:12.0000 2276 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:20:12.0000 2276 IpFilterDriver - ok
20:20:12.0015 2276 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
20:20:12.0046 2276 IpInIp - ok
20:20:12.0093 2276 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
20:20:12.0109 2276 IpNat - ok
20:20:12.0187 2276 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
20:20:12.0203 2276 IPSec - ok
20:20:12.0281 2276 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
20:20:12.0281 2276 IRENUM - ok
20:20:12.0406 2276 [ CC9F8A2D60AED1A51A3AC34C59B987AE ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
20:20:12.0437 2276 isapnp - ok
20:20:12.0484 2276 [ 1B6162FE7F66B1A71A4B70F941C4AA9B ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
20:20:12.0500 2276 Kbdclass - ok
20:20:12.0531 2276 [ 86C8F23616C6C6E5B2776901C17B945B ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
20:20:12.0562 2276 kbdhid - ok
20:20:12.0593 2276 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
20:20:12.0609 2276 kmixer - ok
20:20:12.0640 2276 [ 1705745D900DABF2D89F90EBADDC7517 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
20:20:12.0671 2276 KSecDD - ok
20:20:12.0718 2276 [ 21920AC69594AB021237054FA728FE46 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
20:20:12.0859 2276 lanmanserver - ok
20:20:12.0890 2276 [ 5190783F51A2D7A8495202C664D7C963 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
20:20:13.0062 2276 lanmanworkstation - ok
20:20:13.0093 2276 lbrtfdc - ok
20:20:13.0156 2276 [ 0AB159F536E3E8F7F07113702A07CCA5 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
20:20:13.0171 2276 LmHosts - ok
20:20:13.0234 2276 [ 1A7DB7A00A4B0D8DA24CD691A4547291 ] LVPr2Mon C:\WINDOWS\system32\DRIVERS\LVPr2Mon.sys
20:20:13.0265 2276 LVPr2Mon - ok
20:20:13.0312 2276 [ 0DDFDCAA92C7F553328DB06BA599BEA9 ] LVPrcSrv C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
20:20:13.0359 2276 LVPrcSrv - ok
20:20:13.0406 2276 [ 87ECCE893D8AEC5A9337B917742D339C ] LVRS C:\WINDOWS\system32\DRIVERS\lvrs.sys
20:20:13.0421 2276 LVRS - ok
20:20:13.0500 2276 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
20:20:13.0500 2276 MBAMProtector - ok
20:20:13.0578 2276 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
20:20:13.0593 2276 MBAMScheduler - ok
20:20:13.0656 2276 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
20:20:13.0687 2276 MBAMService - ok
20:20:13.0734 2276 [ 221CD1C815B8A6B79389C3F5D1018DE8 ] Messenger C:\WINDOWS\System32\msgsvc.dll
20:20:13.0859 2276 Messenger - ok
20:20:13.0906 2276 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
20:20:13.0906 2276 mnmdd - ok
20:20:13.0953 2276 [ 9A57D046F88F4B69751B11FD40088A61 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
20:20:14.0046 2276 mnmsrvc - ok
20:20:14.0078 2276 [ 44032B0C6D9954D3FD26438330B99EE7 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
20:20:14.0093 2276 Modem - ok
20:20:14.0140 2276 [ 4CB582831DBDE63CE43B45D771218374 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
20:20:14.0140 2276 Mouclass - ok
20:20:14.0171 2276 [ BB269EBA740737AB749B214D568B6812 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
20:20:14.0171 2276 mouhid - ok
20:20:14.0234 2276 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
20:20:14.0250 2276 MountMgr - ok
20:20:14.0312 2276 [ A35576A433F4AEB0D48976A004657CB6 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
20:20:14.0312 2276 MozillaMaintenance - ok
20:20:14.0375 2276 mraid35x - ok
20:20:14.0421 2276 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
20:20:14.0421 2276 MRxDAV - ok
20:20:14.0546 2276 [ 68755F0FF16070178B54674FE5B847B0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:20:14.0578 2276 MRxSmb - ok
20:20:14.0656 2276 [ 6DB4D1521CABA9A5FFAB54ADE0AE867D ] MSDTC C:\WINDOWS\system32\msdtc.exe
20:20:14.0781 2276 MSDTC - ok
20:20:14.0812 2276 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
20:20:14.0843 2276 Msfs - ok
20:20:14.0859 2276 MSIServer - ok
20:20:14.0921 2276 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:20:14.0921 2276 MSKSSRV - ok
20:20:14.0953 2276 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:20:14.0953 2276 MSPCLOCK - ok
20:20:14.0984 2276 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
20:20:15.0000 2276 MSPQM - ok
20:20:15.0015 2276 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
20:20:15.0015 2276 mssmbios - ok
20:20:15.0078 2276 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
20:20:15.0125 2276 MSTEE - ok
20:20:15.0156 2276 [ 2F625D11385B1A94360BFC70AAEFDEE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
20:20:15.0171 2276 Mup - ok
20:20:15.0187 2276 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
20:20:15.0234 2276 NABTSFEC - ok
20:20:15.0359 2276 [ 6EA362E9DB03D44F6B996F4D8BE237E9 ] napagent C:\WINDOWS\System32\qagentrt.dll
20:20:15.0468 2276 napagent - ok
20:20:15.0515 2276 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
20:20:15.0531 2276 NDIS - ok
20:20:15.0578 2276 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
20:20:15.0578 2276 NdisIP - ok
20:20:15.0625 2276 [ 1AB3D00C991AB086E69DB84B6C0ED78F ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:20:15.0671 2276 NdisTapi - ok
20:20:15.0703 2276 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:20:15.0718 2276 Ndisuio - ok
20:20:15.0750 2276 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:20:15.0765 2276 NdisWan - ok
20:20:15.0812 2276 [ 6215023940CFD3702B46ABC304E1D45A ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
20:20:15.0828 2276 NDProxy - ok
20:20:15.0843 2276 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
20:20:15.0843 2276 NetBIOS - ok
20:20:15.0937 2276 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
20:20:15.0937 2276 NetBT - ok
20:20:15.0984 2276 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDE C:\WINDOWS\system32\netdde.exe
20:20:16.0109 2276 NetDDE - ok
20:20:16.0140 2276 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
20:20:16.0265 2276 NetDDEdsdm - ok
20:20:16.0312 2276 [ ED0A176354487CEED65B80A7148AB739 ] Netlogon C:\WINDOWS\system32\lsass.exe
20:20:16.0406 2276 Netlogon - ok
20:20:16.0437 2276 [ 72E1E9E2977BE08BDEEDB6D8FD9D4D40 ] Netman C:\WINDOWS\System32\netman.dll
20:20:16.0546 2276 Netman - ok
20:20:16.0593 2276 [ AAC97DAB5F8A0573CF10E0EAC42A7724 ] Nla C:\WINDOWS\System32\mswsock.dll
20:20:16.0671 2276 Nla - ok
20:20:16.0703 2276 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
20:20:16.0718 2276 Npfs - ok
20:20:16.0796 2276 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
20:20:16.0859 2276 Ntfs - ok
20:20:16.0890 2276 [ ED0A176354487CEED65B80A7148AB739 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
20:20:16.0953 2276 NtLmSsp - ok
20:20:17.0078 2276 [ 023DD70573D644F3D9C8B1258A7BFD08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
20:20:17.0265 2276 NtmsSvc - ok
20:20:17.0296 2276 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
20:20:17.0328 2276 Null - ok
20:20:17.0437 2276 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
20:20:17.0562 2276 nv - ok
20:20:17.0609 2276 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
20:20:17.0625 2276 NwlnkFlt - ok
20:20:17.0687 2276 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
20:20:17.0703 2276 NwlnkFwd - ok
20:20:17.0734 2276 [ 46F8DB73B4A53E543F8E371DC7C75BAE ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
20:20:17.0750 2276 Parport - ok
20:20:17.0796 2276 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
20:20:17.0828 2276 PartMgr - ok
20:20:17.0875 2276 [ 1FAE19D0457176318BBA4A8795656EBC ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
20:20:17.0906 2276 ParVdm - ok
20:20:17.0937 2276 [ 6CE351D149CB4BEFC702951E471E1730 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
20:20:17.0953 2276 PCI - ok
20:20:17.0968 2276 PCIDump - ok
20:20:18.0046 2276 [ 2DA4EC85E0EA7A45C6B2A05820492D5A ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
20:20:18.0062 2276 PCIIde - ok
20:20:18.0093 2276 [ 4FC31E6C19A5CE5198B1ABFF94CAE758 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
20:20:18.0125 2276 Pcmcia - ok
20:20:18.0140 2276 PDCOMP - ok
20:20:18.0171 2276 PDFRAME - ok
20:20:18.0234 2276 PDRELI - ok
20:20:18.0296 2276 PDRFRAME - ok
20:20:18.0375 2276 [ B20F958B207E6AAAC5F70D04DD2C30D8 ] pepifilter C:\WINDOWS\system32\DRIVERS\lv302af.sys
20:20:18.0375 2276 pepifilter - ok
20:20:18.0390 2276 perc2 - ok
20:20:18.0453 2276 perc2hib - ok
20:20:18.0750 2276 [ DD184D9ADFE2A8A21741DBDFE9E22F5C ] PID_PEPI C:\WINDOWS\system32\DRIVERS\LV302V32.SYS
20:20:18.0859 2276 PID_PEPI - ok
20:20:18.0875 2276 [ F0D2AE69035092BF22DAD6B50FAB85C2 ] PlugPlay C:\WINDOWS\system32\services.exe
20:20:19.0000 2276 PlugPlay - ok
20:20:19.0015 2276 [ ED0A176354487CEED65B80A7148AB739 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
20:20:19.0125 2276 PolicyAgent - ok
20:20:19.0156 2276 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
20:20:19.0171 2276 PptpMiniport - ok
20:20:19.0218 2276 [ 7EB15DCE4EC3A0220BD796A15C18186E ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
20:20:19.0234 2276 Processor - ok
20:20:19.0250 2276 [ ED0A176354487CEED65B80A7148AB739 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
20:20:19.0375 2276 ProtectedStorage - ok
20:20:19.0406 2276 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
20:20:19.0437 2276 PSched - ok
20:20:19.0484 2276 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
20:20:19.0515 2276 Ptilink - ok
20:20:19.0531 2276 ql1080 - ok
20:20:19.0562 2276 Ql10wnt - ok
20:20:19.0593 2276 ql12160 - ok
20:20:19.0640 2276 ql1240 - ok
20:20:19.0687 2276 ql1280 - ok
20:20:19.0765 2276 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:20:19.0765 2276 RasAcd - ok
20:20:19.0906 2276 [ 2B5E44EA009F2F374B980E1E9A70635D ] RasAuto C:\WINDOWS\System32\rasauto.dll
20:20:20.0062 2276 RasAuto - ok
20:20:20.0125 2276 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
20:20:20.0125 2276 Rasl2tp - ok
20:20:20.0187 2276 [ D57554C664B64604BD1EE13EA2C07E77 ] RasMan C:\WINDOWS\System32\rasmans.dll
20:20:20.0343 2276 RasMan - ok
20:20:20.0359 2276 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:20:20.0406 2276 RasPppoe - ok
20:20:20.0468 2276 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
20:20:20.0468 2276 Raspti - ok
20:20:20.0515 2276 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:20:20.0531 2276 Rdbss - ok
20:20:20.0578 2276 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
20:20:20.0578 2276 RDPCDD - ok
20:20:20.0671 2276 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
20:20:20.0703 2276 rdpdr - ok
20:20:20.0750 2276 [ 6728E45B66F93C08F11DE2E316FC70DD ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
20:20:20.0765 2276 RDPWD - ok
20:20:20.0812 2276 [ C0D9D9711CB74EE9BC66353D8CBDAB0E ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
20:20:20.0953 2276 RDSessMgr - ok
20:20:21.0031 2276 [ 611BFD220305BE3A85AE876EA47D4AA5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
20:20:21.0031 2276 redbook - ok
20:20:21.0078 2276 [ 127C26B5371651043450E52542099ABA ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
20:20:21.0203 2276 RemoteAccess - ok
20:20:21.0250 2276 [ 8F31505484A190D5B22274708799F4EC ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
20:20:21.0375 2276 RemoteRegistry - ok
20:20:21.0406 2276 [ 718B3BDC0BC3C2F7D065A53D26202AF9 ] RpcLocator C:\WINDOWS\system32\locator.exe
20:20:21.0500 2276 RpcLocator - ok
20:20:21.0578 2276 [ C868F3AE15CF71A93F2AA3A32856D839 ] RpcSs C:\WINDOWS\System32\rpcss.dll
20:20:21.0687 2276 RpcSs - ok
20:20:21.0750 2276 [ 99F13D7E9AAEC74A5B7D10AB780D9D6F ] RSVP C:\WINDOWS\system32\rsvp.exe
20:20:21.0890 2276 RSVP - ok
20:20:21.0984 2276 [ 3529828EC571FB2F64F6B142F9109993 ] RTL8023xp C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys
20:20:22.0015 2276 RTL8023xp - ok
20:20:22.0031 2276 [ ED0A176354487CEED65B80A7148AB739 ] SamSs C:\WINDOWS\system32\lsass.exe
20:20:22.0140 2276 SamSs - ok
20:20:22.0156 2276 [ 410046E401EB11E1E6749E9DEEA41D4A ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
20:20:22.0328 2276 SCardSvr - ok
20:20:22.0390 2276 [ 3FF232A7731621B8902D81D42418C93C ] Schedule C:\WINDOWS\system32\schedsvc.dll
20:20:22.0546 2276 Schedule - ok
20:20:22.0593 2276 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
20:20:22.0609 2276 Secdrv - ok
20:20:22.0656 2276 [ 477E2C3CC5E4A0D635BCB0EA8DCAC3C6 ] seclogon C:\WINDOWS\System32\seclogon.dll
20:20:22.0812 2276 seclogon - ok
20:20:22.0828 2276 [ A530B75C10C23C9AB28FDB6CE719E21F ] SENS C:\WINDOWS\system32\sens.dll
20:20:23.0031 2276 SENS - ok
20:20:23.0046 2276 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
20:20:23.0078 2276 serenum - ok
20:20:23.0109 2276 [ B842729337C9B921615C40D3C1A1AF96 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
20:20:23.0125 2276 Serial - ok
20:20:23.0187 2276 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
20:20:23.0234 2276 Sfloppy - ok
20:20:23.0328 2276 [ F58FACA9621D2DB01BD0927D9A0A208E ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
20:20:23.0375 2276 SharedAccess - ok
20:20:23.0421 2276 [ B927443008910B412BEC72FC41C1BAD0 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
20:20:23.0562 2276 ShellHWDetection - ok
20:20:23.0609 2276 Simbad - ok
20:20:23.0843 2276 [ 9F712B26EE3B0242DE997A42FD302E2C ] Skype C2C Service C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
20:20:23.0953 2276 Skype C2C Service - ok
20:20:24.0015 2276 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
20:20:24.0031 2276 SLIP - ok
20:20:24.0062 2276 Sparrow - ok
20:20:24.0140 2276 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
20:20:24.0140 2276 splitter - ok
20:20:24.0203 2276 [ CB1090BCA0E7B40D0B5B4E4D66531809 ] Spooler C:\WINDOWS\system32\spoolsv.exe
20:20:24.0343 2276 Spooler - ok
20:20:24.0390 2276 [ 94610C8653635E4459316A0050D55CE7 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
20:20:24.0406 2276 sr - ok
20:20:24.0437 2276 [ 35B91147124F64AC8081A2EDB9EA4DEE ] srservice C:\WINDOWS\system32\srsvc.dll
20:20:24.0593 2276 srservice - ok
20:20:24.0640 2276 [ 5252605079810904E31C332E241CD59B ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
20:20:24.0656 2276 Srv - ok
20:20:24.0687 2276 [ BECD5271DC4E3B7C3D035F790FCBC1E5 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
20:20:24.0875 2276 SSDPSRV - ok
20:20:24.0953 2276 [ C1CDD9275F6A115BB0AE1D55D8D27BA6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
20:20:25.0109 2276 stisvc - ok
20:20:25.0156 2276 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
20:20:25.0171 2276 streamip - ok
20:20:25.0218 2276 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
20:20:25.0250 2276 swenum - ok
20:20:25.0312 2276 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
20:20:25.0312 2276 swmidi - ok
20:20:25.0343 2276 SwPrv - ok
20:20:25.0406 2276 symc810 - ok
20:20:25.0437 2276 symc8xx - ok
20:20:25.0468 2276 sym_hi - ok
20:20:25.0515 2276 sym_u3 - ok
20:20:25.0578 2276 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
20:20:25.0593 2276 sysaudio - ok
20:20:25.0625 2276 [ CE06F01B88ACE199A1BF460CAC29C110 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
20:20:25.0796 2276 SysmonLog - ok
20:20:25.0843 2276 [ C2546CD7A398476F9DF5614B2AE160E8 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
20:20:26.0031 2276 TapiSrv - ok
20:20:26.0093 2276 [ 93EA8D04EC73A85DB02EB8805988F733 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:20:26.0125 2276 Tcpip - ok
20:20:26.0171 2276 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
20:20:26.0234 2276 TDPIPE - ok
20:20:26.0281 2276 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
20:20:26.0312 2276 TDTCP - ok
20:20:26.0359 2276 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
20:20:26.0375 2276 TermDD - ok
20:20:26.0421 2276 [ A75DD6FC3DBEE4FFF5EBC9F2C28BB66E ] TermService C:\WINDOWS\System32\termsrv.dll
20:20:26.0625 2276 TermService - ok
20:20:26.0671 2276 [ B927443008910B412BEC72FC41C1BAD0 ] Themes C:\WINDOWS\System32\shsvcs.dll
20:20:26.0812 2276 Themes - ok
20:20:26.0843 2276 [ CD0CC7B167D78043A41C98D4921EFB54 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
20:20:27.0015 2276 TlntSvr - ok
20:20:27.0031 2276 TosIde - ok
20:20:27.0109 2276 [ 38853304CCB938D30E0C4CDE8D2C2A8A ] TrkWks C:\WINDOWS\system32\trkwks.dll
20:20:27.0250 2276 TrkWks - ok
20:20:27.0359 2276 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
20:20:27.0375 2276 Udfs - ok
20:20:27.0437 2276 ultra - ok
20:20:27.0500 2276 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
20:20:27.0546 2276 Update - ok
20:20:27.0593 2276 [ 651BD90DCEE5B7BDC74A2EB7C9266F9E ] upnphost C:\WINDOWS\System32\upnphost.dll
20:20:27.0765 2276 upnphost - ok
20:20:27.0781 2276 [ 20A0F6A11959E92908717D09E87D670D ] UPS C:\WINDOWS\System32\ups.exe
20:20:27.0984 2276 UPS - ok
20:20:28.0062 2276 [ E919708DB44ED8543A7C017953148330 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
20:20:28.0093 2276 usbaudio - ok
20:20:28.0125 2276 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
20:20:28.0156 2276 usbccgp - ok
20:20:28.0187 2276 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
20:20:28.0218 2276 usbehci - ok
20:20:28.0250 2276 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
20:20:28.0281 2276 usbhub - ok
20:20:28.0328 2276 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
20:20:28.0406 2276 USBSTOR - ok
20:20:28.0421 2276 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
20:20:28.0437 2276 usbuhci - ok
20:20:28.0468 2276 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
20:20:28.0531 2276 VgaSave - ok
20:20:28.0562 2276 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
20:20:28.0593 2276 ViaIde - ok
20:20:28.0625 2276 [ 28A4B296B47782173C346E376CB374D1 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
20:20:28.0671 2276 VolSnap - ok
20:20:28.0734 2276 [ D6BA1A63D9E00933F1CD2A885573AFB2 ] VSS C:\WINDOWS\System32\vssvc.exe
20:20:28.0906 2276 VSS - ok
20:20:28.0953 2276 [ FA4E1CDBA256787F2149F4AAD07BC91F ] W32Time C:\WINDOWS\system32\w32time.dll
20:20:29.0171 2276 W32Time - ok
20:20:29.0250 2276 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
20:20:29.0265 2276 Wanarp - ok
20:20:29.0312 2276 WDICA - ok
20:20:29.0343 2276 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
20:20:29.0406 2276 wdmaud - ok
20:20:29.0437 2276 [ 47AE51048A82DFA1CD6B51D369F7E169 ] WebClient C:\WINDOWS\System32\webclnt.dll
20:20:29.0625 2276 WebClient - ok
20:20:29.0718 2276 [ E488332126E3B1182D2B8A0C35408EC6 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
20:20:29.0718 2276 winmgmt - ok
20:20:29.0812 2276 [ 6199B2AE3F9DB9CB6DB230471A1DC601 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
20:20:29.0906 2276 WmdmPmSN - ok
20:20:29.0984 2276 [ 6538D6BDE04B56737FE743C24D4CE83D ] Wmi C:\WINDOWS\System32\advapi32.dll
20:20:30.0015 2276 Wmi - ok
20:20:30.0109 2276 [ 23F6F03272F7E5679F1F050AED5ACEE6 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
20:20:30.0125 2276 WmiApSrv - ok
20:20:30.0203 2276 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
20:20:30.0234 2276 WS2IFSL - ok
20:20:30.0265 2276 [ 4C86D5FAF78194995AF9CC1075F65DD3 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
20:20:30.0484 2276 wscsvc - ok
20:20:30.0531 2276 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
20:20:30.0578 2276 WSTCODEC - ok
20:20:30.0609 2276 [ C1364564800EE9784192145324A23308 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
20:20:30.0750 2276 wuauserv - ok
20:20:30.0843 2276 [ A27D4BA7264C0BF52F32D10405BEA1D4 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
20:20:31.0078 2276 WZCSVC - ok
20:20:31.0125 2276 [ EAA4BB9EDB3FB10CF8979FE65E63658F ] xmlprov C:\WINDOWS\System32\xmlprov.dll
20:20:31.0328 2276 xmlprov - ok
20:20:31.0406 2276 [ DD0042F0C3B606A6A8B92D49AFB18AD6 ] YahooAUService C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
20:20:31.0421 2276 YahooAUService - ok
20:20:31.0468 2276 ================ Scan global ===============================
20:20:31.0500 2276 [ F36278E42C8C5DF03CE17DAC8231C91C ] C:\WINDOWS\system32\basesrv.dll
20:20:31.0546 2276 [ 77A41C497ADB0C96D1E8DF6F71D843C0 ] C:\WINDOWS\system32\winsrv.dll
20:20:31.0765 2276 [ 77A41C497ADB0C96D1E8DF6F71D843C0 ] C:\WINDOWS\system32\winsrv.dll
20:20:31.0968 2276 [ F0D2AE69035092BF22DAD6B50FAB85C2 ] C:\WINDOWS\system32\services.exe
20:20:32.0125 2276 [Global] - ok
20:20:32.0125 2276 ================ Scan MBR ==================================
20:20:32.0156 2276 [ 413FC2A0C716421B3158746D63736515 ] \Device\Harddisk0\DR0
20:20:33.0203 2276 \Device\Harddisk0\DR0 - ok
20:20:33.0218 2276 ================ Scan VBR ==================================
20:20:33.0218 2276 [ F59623348C88E0345FF122362545537C ] \Device\Harddisk0\DR0\Partition1
20:20:33.0250 2276 \Device\Harddisk0\DR0\Partition1 - ok
20:20:33.0281 2276 [ D854B712D5BF855D8A0F39600C9E9FEE ] \Device\Harddisk0\DR0\Partition2
20:20:33.0281 2276 \Device\Harddisk0\DR0\Partition2 - ok
20:20:33.0296 2276 ============================================================
20:20:33.0312 2276 Scan finished
20:20:33.0312 2276 ============================================================
20:20:33.0375 2036 Detected object count: 0
20:20:33.0375 2036 Actual detected object count: 0

sanko33
Level 3.5
Level 3.5
Příspěvky: 742
Registrován: březen 10
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod sanko33 » 03 led 2014 20:47

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-01-03 20:37:28
-----------------------------
20:37:29.000 OS Version: Windows 5.1.2600 Service Pack 3
20:37:29.000 Number of processors: 1 586 0x2F02
20:37:29.031 ComputerName: ADMIN-2915FAFE7 UserName: Admin
20:37:36.375 Initialize success
20:38:13.015 AVAST engine defs: 14010300
20:38:44.171 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
20:38:44.171 Disk 0 Vendor: SAMSUNG_SP1213C SV100-30 Size: 114498MB BusType: 3
20:38:44.296 Disk 0 MBR read successfully
20:38:44.296 Disk 0 MBR scan
20:38:44.375 Disk 0 Windows XP default MBR code
20:38:44.375 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 14998 MB offset 63
20:38:44.375 Disk 0 Partition - 00 0F Extended LBA 99488 MB offset 30716280
20:38:44.406 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 99488 MB offset 30716343
20:38:44.437 Disk 0 scanning sectors +234468675
20:38:44.500 Disk 0 scanning C:\WINDOWS\system32\drivers
20:39:00.687 Service scanning
20:39:19.578 Modules scanning
20:39:41.359 Disk 0 trace - called modules:
20:39:41.859 ntkrnlpa.exe CLASSPNP.SYS disk.sys atapi.sys hal.dll pciide.sys PCIIDEX.SYS
20:39:41.859 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8258dab8]
20:39:41.859 3 CLASSPNP.SYS[f86a6fd7] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x8250bd98]
20:39:42.093 AVAST engine scan C:\WINDOWS
20:39:43.875 AVAST engine scan C:\WINDOWS\system32
20:41:14.406 AVAST engine scan C:\WINDOWS\system32\drivers
20:41:26.734 AVAST engine scan C:\Documents and Settings\Admin
20:42:45.609 AVAST engine scan C:\Documents and Settings\All Users
20:42:55.875 Scan finished successfully
20:43:54.031 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Admin\Plocha\MBR.dat"
20:43:54.062 The log file has been saved successfully to "C:\Documents and Settings\Admin\Plocha\aswMBR.txt"

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod Orcus » 03 led 2014 21:47

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.

Pokud budou problémy , spusť v nouz. režimu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

sanko33
Level 3.5
Level 3.5
Příspěvky: 742
Registrován: březen 10
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod sanko33 » 04 led 2014 00:24

ComboFix 14-01-04.01 - Admin 03.01.2014 22:54:49.3.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.510.322 [GMT 1:00]
Spuštěný z: c:\documents and settings\Admin\Plocha\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-12-03 do 2014-01-03 )))))))))))))))))))))))))))))))
.
.
2014-01-03 21:00 . 2014-01-03 20:59 57672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2014-01-03 21:00 . 2014-01-03 20:59 49944 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-01-03 21:00 . 2014-01-03 20:59 403440 ----a-w- c:\windows\system32\drivers\aswSP.sys
2014-01-03 21:00 . 2014-01-03 20:59 178304 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-01-03 21:00 . 2014-01-03 20:59 774392 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2014-01-03 21:00 . 2014-01-03 20:59 70384 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-01-03 21:00 . 2014-01-03 20:59 54832 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2014-01-03 21:00 . 2014-01-03 20:59 35656 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2014-01-03 20:59 . 2014-01-03 20:59 43152 ----a-w- c:\windows\avastSS.scr
2014-01-03 20:58 . 2014-01-03 20:58 -------- d-----w- c:\program files\AVAST Software
2014-01-03 20:00 . 2014-01-03 20:07 -------- d-----w- c:\program files\Google
2014-01-02 09:06 . 2008-04-14 07:51 94208 ------w- c:\windows\system32\eappgnui.dll
2014-01-02 09:03 . 2014-01-02 09:07 -------- d-----w- c:\windows\ServicePackFiles
2014-01-02 09:03 . 2008-04-14 07:52 294912 ------w- c:\program files\Windows Media Player\dlimport.exe
2014-01-02 09:03 . 2008-04-14 07:52 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe
2014-01-02 09:02 . 2008-04-14 07:53 259072 -c----w- c:\windows\system32\dllcache\msnetobj.dll
2014-01-02 09:02 . 2008-04-14 07:53 259072 ------w- c:\windows\system32\msnetobj.dll
2014-01-02 09:00 . 2006-12-28 23:31 19569 ----a-w- c:\windows\002780_.tmp
2014-01-02 08:59 . 2007-08-10 19:43 26488 ----a-w- c:\windows\system32\spupdsvc.exe
2013-12-23 18:13 . 2013-12-30 06:30 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Yahoo! Companion
2013-12-23 18:13 . 2013-12-23 18:13 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Yahoo!
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-01-03 20:59 . 2013-10-18 06:23 269216 ----a-w- c:\windows\system32\aswBoot.exe
2014-01-02 11:02 . 2014-01-02 11:02 25471 ----a-w- c:\windows\system32\drivers\watv10nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 22271 ----a-w- c:\windows\system32\drivers\watv06nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11935 ----a-w- c:\windows\system32\drivers\wadv11nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11871 ----a-w- c:\windows\system32\drivers\wadv09nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11295 ----a-w- c:\windows\system32\drivers\wadv08nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11807 ----a-w- c:\windows\system32\drivers\wadv07nt.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4352 ----a-w- c:\windows\system32\drivers\wmilib.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 19200 ----a-w- c:\windows\system32\drivers\wstcodec.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12032 ----a-w- c:\windows\system32\drivers\ws2ifsl.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 14208 ----a-w- c:\windows\system32\drivers\wacompen.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 12800 ----a-w- c:\windows\system32\drivers\usb8023x.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 58112 ----a-w- c:\windows\system32\drivers\vdmindvd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 5376 ----a-w- c:\windows\system32\drivers\viaide.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4736 ----a-w- c:\windows\system32\drivers\usbd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 30208 ----a-w- c:\windows\system32\drivers\usbehci.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 26368 ----a-w- c:\windows\system32\drivers\usbstor.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 25728 ----a-w- c:\windows\system32\drivers\usbcamd2.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 25600 ----a-w- c:\windows\system32\drivers\usbcamd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 20992 ----a-w- c:\windows\system32\drivers\vga.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 20608 ----a-w- c:\windows\system32\drivers\usbuhci.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 15872 ----a-w- c:\windows\system32\drivers\usbintel.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 5888 ----a-w- c:\windows\system32\drivers\smbali.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 13240 ----a-w- c:\windows\system32\drivers\slwdmsup.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 51712 ----a-w- c:\windows\system32\drivers\tosdvd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4352 ----a-w- c:\windows\system32\drivers\swenum.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 21896 ----a-w- c:\windows\system32\drivers\tdtcp.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 21376 ----a-w- c:\windows\system32\drivers\tsbvcap.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 19072 ----a-w- c:\windows\system32\drivers\tdi.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 15232 ----a-w- c:\windows\system32\drivers\streamip.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 14976 ----a-w- c:\windows\system32\drivers\tape.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12800 ----a-w- c:\windows\system32\drivers\usb8023.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12288 ----a-w- c:\windows\system32\drivers\tunmp.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12040 ----a-w- c:\windows\system32\drivers\tdpipe.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 6272 ----a-w- c:\windows\system32\drivers\splitter.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 25344 ----a-w- c:\windows\system32\drivers\sonydcam.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 14592 ----a-w- c:\windows\system32\drivers\smclib.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 40960 ----a-w- c:\windows\system32\drivers\sisagp.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 30592 ----a-w- c:\windows\system32\drivers\rndismpx.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 10240 ----a-w- c:\windows\system32\drivers\sffp_mmc.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 5888 ----a-w- c:\windows\system32\drivers\rootmdm.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 30592 ----a-w- c:\windows\system32\drivers\rndismp.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 20480 ----a-w- c:\windows\system32\drivers\secdrv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 15744 ----a-w- c:\windows\system32\drivers\serenum.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 11904 ----a-w- c:\windows\system32\drivers\sffdisk.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 11392 ----a-w- c:\windows\system32\drivers\sfloppy.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 11136 ----a-w- c:\windows\system32\drivers\slip.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 11008 ----a-w- c:\windows\system32\drivers\sffp_sd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 105088 ----a-w- c:\windows\system32\drivers\Rtnicxp.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 13776 ----a-w- c:\windows\system32\drivers\recagent.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4224 ----a-w- c:\windows\system32\drivers\rdpcdd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 34432 ----a-w- c:\windows\system32\drivers\rawwan.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 16512 ----a-w- c:\windows\system32\drivers\raspti.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12032 ----a-w- c:\windows\system32\drivers\riodrv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12032 ----a-w- c:\windows\system32\drivers\rio8drv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 8832 ----a-w- c:\windows\system32\drivers\rasacd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 6784 ----a-w- c:\windows\system32\drivers\parvdm.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 3456 ----a-w- c:\windows\system32\drivers\oprghdlr.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 3328 ----a-w- c:\windows\system32\drivers\pciide.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 24960 ----a-w- c:\windows\system32\drivers\pciidex.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 19712 ----a-w- c:\windows\system32\drivers\partmgr.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 17792 ----a-w- c:\windows\system32\drivers\ptilink.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 63232 ----a-w- c:\windows\system32\drivers\nwlnknb.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 55936 ----a-w- c:\windows\system32\drivers\nwlnkspx.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 32512 ----a-w- c:\windows\system32\drivers\nwlnkfwd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12416 ----a-w- c:\windows\system32\drivers\nwlnkflt.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 574976 ----a-w- c:\windows\system32\drivers\ntfs.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 30848 ----a-w- c:\windows\system32\drivers\npfs.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 2944 ----a-w- c:\windows\system32\drivers\null.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 1897408 ----a-w- c:\windows\system32\drivers\nv4_mini.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12032 ----a-w- c:\windows\system32\drivers\nikedrv.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 12672 ----a-w- c:\windows\system32\drivers\mutohpen.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 14592 ----a-w- c:\windows\system32\drivers\ndisuio.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 10880 ----a-w- c:\windows\system32\drivers\ndisip.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 10112 ----a-w- c:\windows\system32\drivers\ndistapi.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 7552 ----a-w- c:\windows\system32\drivers\mskssrv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 5504 ----a-w- c:\windows\system32\drivers\mstee.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 5376 ----a-w- c:\windows\system32\drivers\mspclock.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4992 ----a-w- c:\windows\system32\drivers\mspqm.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 19072 ----a-w- c:\windows\system32\drivers\msfs.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 15488 ----a-w- c:\windows\system32\drivers\mssmbios.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11868 ----a-w- c:\windows\system32\drivers\mdmxsdk.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 7680 ----a-w- c:\windows\system32\drivers\mcd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4224 ----a-w- c:\windows\system32\drivers\mnmdd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 30080 ----a-w- c:\windows\system32\drivers\modem.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 23040 ----a-w- c:\windows\system32\drivers\mouclass.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 2687512 ----a-w- c:\windows\system32\drivers\LV302V32.SYS.bak
2014-01-02 11:02 . 2013-12-30 09:51 265496 ----a-w- c:\windows\system32\drivers\lvrs.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 25752 ----a-w- c:\windows\system32\drivers\LVPr2Mon.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 22856 ----a-w- c:\windows\system32\drivers\mbam.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 46592 ----a-w- c:\windows\system32\drivers\irbus.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 92288 ----a-w- c:\windows\system32\drivers\ksecdd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 14592 ----a-w- c:\windows\system32\drivers\kbdhid.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 13976 ----a-w- c:\windows\system32\drivers\lv302af.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 40192 ----a-w- c:\windows\system32\drivers\intelppm.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 36608 ----a-w- c:\windows\system32\drivers\ip6fw.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 32896 ----a-w- c:\windows\system32\drivers\ipfltdrv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 24576 ----a-w- c:\windows\system32\drivers\kbdclass.sys.bak
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-01-03 20:59 321752 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [2006-11-17 577536]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-09-23 926896]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-01-03 3568312]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKLM\~\startupfolder\C:^Documents and Settings^Admin^Nabídka Start^Programy^Po spuštění^Logitech . Registrace produktu.lnk]
path=c:\documents and settings\Admin\Nabídka Start\Programy\Po spuštění\Logitech . Registrace produktu.lnk
backup=c:\windows\pss\Logitech . Registrace produktu.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
2013-09-25 19:53 138096 ----atw- c:\documents and settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Vid]
2009-07-16 13:35 5458704 ----a-w- c:\program files\Logitech\Logitech Vid\Vid.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechQuickCamRibbon]
2009-10-14 11:36 2793304 ----a-w- c:\program files\Logitech\Logitech WebCam Software\LWS.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Messenger (Yahoo!)]
2012-05-25 03:25 6595928 ----a-w- c:\progra~1\Yahoo!\Messenger\YahooMessenger.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2013-06-21 07:58 19875432 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wuauserv"=2 (0x2)
"wscsvc"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Documents and Settings\\Admin\\Local Settings\\Data aplikací\\Facebook\\Video\\Skype\\FacebookVideoCalling.exe"=
"c:\\Program Files\\Logitech\\Logitech Vid\\Vid.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
.
R2 Skype C2C Service;Skype C2C Service;c:\documents and settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - RLCLRTCO
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-01-03 20:49 1210320 ----a-w- c:\program files\Google\Chrome\Application\31.0.1650.63\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-01-03 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-21 17:39]
.
2014-01-03 c:\windows\Tasks\avast! Emergency Update.job
- c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2014-01-03 20:59]
.
2014-01-03 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-01-03 00:50]
.
2014-01-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-01-03 00:50]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://google.com/
mStart Page = hxxp://vn.yahoo.com/?fr=mkg029
uSearchURL,(Default) = hxxp://vn.rd.yahoo.com/customize/ycomp/ ... .yahoo.com
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\documents and settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\emlv4rnr.default\
FF - prefs.js: browser.search.defaulturl - hxxp://vn.search.yahoo.com/search?fr=mkg030&p=
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - google.cz
FF - prefs.js: keyword.URL - hxxp://vn.search.yahoo.com/search?fr=mkg030&p=
FF - ExtSQL: 2013-12-23 19:13; {635abd67-4fe9-1b23-4f01-e679fa7484c1}; c:\documents and settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\emlv4rnr.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
FF - ExtSQL: 2014-01-03 21:59; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
MSConfigStartUp-Google Update - c:\documents and settings\Admin\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
MSConfigStartUp-uTorrent - c:\documents and settings\Admin\Data aplikací\uTorrent\uTorrent.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-01-03 23:40
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrueSight]
"ImagePath"="\??\"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
Celkový čas: 2014-01-04 00:14:44
ComboFix-quarantined-files.txt 2014-01-03 23:13
.
Před spuštěním: 8 061 661 184
Po spuštění: 8 133 021 696
.
- - End Of File - - 4AC069D61753C22D3AECA1AFA2382E79
413FC2A0C716421B3158746D63736515

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod Orcus » 05 led 2014 11:30

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:

Kód: Vybrat vše

ClearJavaCache::

KillAll::
File::
c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

Firefox::
FF - ProfilePath - c:\documents and settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\emlv4rnr.default\
FF - prefs.js: browser.search.defaulturl - hxxp://vn.search.yahoo.com/search?fr=mkg030&p=
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: keyword.URL - hxxp://vn.search.yahoo.com/search?fr=mkg030&p=
FF - ExtSQL: 2013-12-23 19:13; {635abd67-4fe9-1b23-4f01-e679fa7484c1}; c:\documents and settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\emlv4rnr.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}

RegLock::

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"



Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

sanko33
Level 3.5
Level 3.5
Příspěvky: 742
Registrován: březen 10
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod sanko33 » 18 led 2014 22:12

ComboFix 14-01-16.03 - Admin 18.01.2014 22:01:23.4.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.510.257 [GMT 1:00]
Spuštěný z: c:\documents and settings\Admin\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Admin\Plocha\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
FILE ::
"c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msmqinst.log
c:\windows\system32\TZLog.log
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-12-18 do 2014-01-18 )))))))))))))))))))))))))))))))
.
.
2014-01-18 20:45 . 2014-01-18 20:45 -------- d-sh--w- c:\documents and settings\Admin\IECompatCache
2014-01-18 20:45 . 2014-01-18 20:45 -------- d-sh--w- c:\documents and settings\Admin\PrivacIE
2014-01-18 03:02 . 2014-01-18 03:02 -------- d-sh--w- c:\documents and settings\Admin\IETldCache
2014-01-17 09:26 . 2013-10-29 07:45 522240 -c----w- c:\windows\system32\dllcache\jsdbgui.dll
2014-01-17 09:26 . 2011-08-16 10:45 6144 -c----w- c:\windows\system32\dllcache\iecompat.dll
2014-01-17 09:25 . 2013-10-29 07:45 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2014-01-17 09:25 . 2013-10-29 12:15 11113472 -c----w- c:\windows\system32\dllcache\ieframe.dll
2014-01-17 09:25 . 2013-10-29 07:45 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2014-01-17 09:25 . 2013-10-29 07:45 630272 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2014-01-17 09:25 . 2013-10-29 07:45 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2014-01-17 09:25 . 2013-10-29 07:45 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2014-01-17 09:25 . 2013-10-29 07:45 2006016 -c----w- c:\windows\system32\dllcache\iertutil.dll
2014-01-17 09:24 . 2014-01-17 09:25 -------- dc-h--w- c:\windows\ie8
2014-01-17 05:07 . 2008-06-14 17:35 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2014-01-17 05:07 . 2010-09-18 06:53 954368 -c----w- c:\windows\system32\dllcache\mfc40.dll
2014-01-17 05:07 . 2010-09-18 06:53 953856 -c----w- c:\windows\system32\dllcache\mfc40u.dll
2014-01-17 05:06 . 2010-08-23 16:12 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll
2014-01-17 05:05 . 2011-07-15 13:29 456320 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2014-01-17 05:05 . 2009-11-21 16:03 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2014-01-17 05:05 . 2010-06-14 14:31 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2014-01-17 05:04 . 2013-07-03 02:12 25088 -c----w- c:\windows\system32\dllcache\hidparse.sys
2014-01-17 05:04 . 2013-07-03 01:59 14976 -c----w- c:\windows\system32\dllcache\usbscan.sys
2014-01-17 05:04 . 2010-08-27 08:03 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2014-01-17 05:04 . 2009-10-15 16:32 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2014-01-17 05:03 . 2009-06-21 21:48 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2014-01-17 05:03 . 2009-02-06 10:10 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2014-01-17 05:03 . 2009-03-06 14:23 284160 -c----w- c:\windows\system32\dllcache\pdh.dll
2014-01-17 05:03 . 2009-02-09 11:25 111104 -c----w- c:\windows\system32\dllcache\services.exe
2014-01-17 05:03 . 2009-02-09 10:56 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2014-01-17 05:03 . 2009-02-09 10:56 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2014-01-17 05:03 . 2009-02-06 10:39 35328 -c----w- c:\windows\system32\dllcache\sc.exe
2014-01-17 05:03 . 2009-02-09 10:56 684032 -c----w- c:\windows\system32\dllcache\advapi32.dll
2014-01-17 05:03 . 2009-02-09 10:56 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2014-01-17 05:02 . 2013-07-17 00:58 123008 -c----w- c:\windows\system32\dllcache\usbvideo.sys
2014-01-17 05:02 . 2013-07-17 00:58 46848 -c----w- c:\windows\system32\dllcache\irbus.sys
2014-01-17 05:02 . 2013-07-17 00:58 60160 -c----w- c:\windows\system32\dllcache\usbaudio.sys
2014-01-17 05:02 . 2013-02-12 00:32 12928 -c----w- c:\windows\system32\dllcache\usb8023x.sys
2014-01-17 05:02 . 2013-02-12 00:32 12928 -c----w- c:\windows\system32\dllcache\usb8023.sys
2014-01-17 05:01 . 2011-04-21 13:37 105472 -c----w- c:\windows\system32\dllcache\mup.sys
2014-01-17 05:01 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2014-01-17 05:01 . 2012-05-28 18:16 536576 -c----w- c:\windows\system32\dllcache\msado15.dll
2014-01-17 05:00 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2014-01-17 05:00 . 2008-05-01 14:37 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2014-01-17 05:00 . 2010-06-18 13:36 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2014-01-17 04:59 . 2012-07-04 14:05 139784 -c----w- c:\windows\system32\dllcache\rdpwd.sys
2014-01-17 04:58 . 2010-12-09 15:15 713216 -c----w- c:\windows\system32\dllcache\ntdll.dll
2014-01-17 04:58 . 2013-07-04 07:34 2195712 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2014-01-17 04:58 . 2013-07-04 07:34 2151936 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2014-01-17 04:58 . 2013-07-04 07:34 2072320 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe
2014-01-17 04:58 . 2013-07-04 07:33 2030592 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2014-01-17 04:58 . 2008-04-21 21:15 216576 ----a-w- c:\windows\system32\dllcache\wordpad.exe
2014-01-17 04:57 . 2011-07-08 14:02 10496 -c----w- c:\windows\system32\dllcache\ndistapi.sys
2014-01-17 04:57 . 2012-01-11 19:07 3072 -c----w- c:\windows\system32\dllcache\iacenc.dll
2014-01-17 04:57 . 2012-01-11 19:07 3072 ------w- c:\windows\system32\iacenc.dll
2014-01-17 04:57 . 2013-11-27 20:21 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2014-01-17 04:56 . 2010-10-11 14:59 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2014-01-17 04:53 . 2013-08-09 00:55 144128 -c----w- c:\windows\system32\dllcache\usbport.sys
2014-01-17 04:53 . 2013-08-09 00:55 32384 -c----w- c:\windows\system32\dllcache\usbccgp.sys
2014-01-17 04:53 . 2013-08-09 00:55 5376 -c----w- c:\windows\system32\dllcache\usbd.sys
2014-01-17 04:53 . 2009-03-18 11:02 30336 -c----w- c:\windows\system32\dllcache\usbehci.sys
2014-01-16 11:24 . 2014-01-18 04:19 -------- d--h--w- c:\windows\$hf_mig$
2014-01-03 21:00 . 2014-01-06 09:50 57672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2014-01-03 21:00 . 2014-01-06 09:50 180248 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-01-03 21:00 . 2014-01-06 09:50 410528 ----a-w- c:\windows\system32\drivers\aswSP.sys
2014-01-03 21:00 . 2014-01-03 20:59 49944 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-01-03 21:00 . 2014-01-06 09:50 775952 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2014-01-03 21:00 . 2014-01-06 09:50 67824 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-01-03 21:00 . 2014-01-06 09:50 54832 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2014-01-03 20:59 . 2014-01-06 09:50 43152 ----a-w- c:\windows\avastSS.scr
2014-01-03 20:58 . 2014-01-03 20:58 -------- d-----w- c:\program files\AVAST Software
2014-01-03 20:00 . 2014-01-03 20:07 -------- d-----w- c:\program files\Google
2014-01-02 09:06 . 2008-04-14 07:51 94208 ------w- c:\windows\system32\eappgnui.dll
2014-01-02 09:03 . 2014-01-02 09:07 -------- d-----w- c:\windows\ServicePackFiles
2014-01-02 09:03 . 2008-04-14 07:52 294912 ------w- c:\program files\Windows Media Player\dlimport.exe
2014-01-02 09:03 . 2008-04-14 07:52 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe
2014-01-02 09:02 . 2008-04-14 07:53 259072 -c----w- c:\windows\system32\dllcache\msnetobj.dll
2014-01-02 09:02 . 2008-04-14 07:53 259072 ------w- c:\windows\system32\msnetobj.dll
2014-01-02 09:00 . 2006-12-28 23:31 19569 ----a-w- c:\windows\002780_.tmp
2014-01-02 08:59 . 2009-01-07 17:20 26144 ----a-w- c:\windows\system32\spupdsvc.exe
2013-12-23 18:13 . 2013-12-30 06:30 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Yahoo! Companion
2013-12-23 18:13 . 2013-12-23 18:13 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Yahoo!
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-01-06 09:50 . 2013-10-18 06:23 270240 ----a-w- c:\windows\system32\aswBoot.exe
2014-01-02 11:02 . 2014-01-02 11:02 25471 ----a-w- c:\windows\system32\drivers\watv10nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 22271 ----a-w- c:\windows\system32\drivers\watv06nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11935 ----a-w- c:\windows\system32\drivers\wadv11nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11871 ----a-w- c:\windows\system32\drivers\wadv09nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11295 ----a-w- c:\windows\system32\drivers\wadv08nt.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11807 ----a-w- c:\windows\system32\drivers\wadv07nt.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4352 ----a-w- c:\windows\system32\drivers\wmilib.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 19200 ----a-w- c:\windows\system32\drivers\wstcodec.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12032 ----a-w- c:\windows\system32\drivers\ws2ifsl.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 14208 ----a-w- c:\windows\system32\drivers\wacompen.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 12800 ----a-w- c:\windows\system32\drivers\usb8023x.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 58112 ----a-w- c:\windows\system32\drivers\vdmindvd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 5376 ----a-w- c:\windows\system32\drivers\viaide.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4736 ----a-w- c:\windows\system32\drivers\usbd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 30208 ----a-w- c:\windows\system32\drivers\usbehci.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 26368 ----a-w- c:\windows\system32\drivers\usbstor.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 25728 ----a-w- c:\windows\system32\drivers\usbcamd2.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 25600 ----a-w- c:\windows\system32\drivers\usbcamd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 20992 ----a-w- c:\windows\system32\drivers\vga.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 20608 ----a-w- c:\windows\system32\drivers\usbuhci.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 15872 ----a-w- c:\windows\system32\drivers\usbintel.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 5888 ----a-w- c:\windows\system32\drivers\smbali.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 13240 ----a-w- c:\windows\system32\drivers\slwdmsup.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 51712 ----a-w- c:\windows\system32\drivers\tosdvd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4352 ----a-w- c:\windows\system32\drivers\swenum.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 21896 ----a-w- c:\windows\system32\drivers\tdtcp.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 21376 ----a-w- c:\windows\system32\drivers\tsbvcap.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 19072 ----a-w- c:\windows\system32\drivers\tdi.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 15232 ----a-w- c:\windows\system32\drivers\streamip.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 14976 ----a-w- c:\windows\system32\drivers\tape.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12800 ----a-w- c:\windows\system32\drivers\usb8023.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12288 ----a-w- c:\windows\system32\drivers\tunmp.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12040 ----a-w- c:\windows\system32\drivers\tdpipe.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 6272 ----a-w- c:\windows\system32\drivers\splitter.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 25344 ----a-w- c:\windows\system32\drivers\sonydcam.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 14592 ----a-w- c:\windows\system32\drivers\smclib.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 40960 ----a-w- c:\windows\system32\drivers\sisagp.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 30592 ----a-w- c:\windows\system32\drivers\rndismpx.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 10240 ----a-w- c:\windows\system32\drivers\sffp_mmc.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 5888 ----a-w- c:\windows\system32\drivers\rootmdm.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 30592 ----a-w- c:\windows\system32\drivers\rndismp.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 20480 ----a-w- c:\windows\system32\drivers\secdrv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 15744 ----a-w- c:\windows\system32\drivers\serenum.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 11904 ----a-w- c:\windows\system32\drivers\sffdisk.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 11392 ----a-w- c:\windows\system32\drivers\sfloppy.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 11136 ----a-w- c:\windows\system32\drivers\slip.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 11008 ----a-w- c:\windows\system32\drivers\sffp_sd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 105088 ----a-w- c:\windows\system32\drivers\Rtnicxp.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 13776 ----a-w- c:\windows\system32\drivers\recagent.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4224 ----a-w- c:\windows\system32\drivers\rdpcdd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 34432 ----a-w- c:\windows\system32\drivers\rawwan.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 16512 ----a-w- c:\windows\system32\drivers\raspti.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12032 ----a-w- c:\windows\system32\drivers\riodrv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12032 ----a-w- c:\windows\system32\drivers\rio8drv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 8832 ----a-w- c:\windows\system32\drivers\rasacd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 6784 ----a-w- c:\windows\system32\drivers\parvdm.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 3456 ----a-w- c:\windows\system32\drivers\oprghdlr.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 3328 ----a-w- c:\windows\system32\drivers\pciide.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 24960 ----a-w- c:\windows\system32\drivers\pciidex.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 19712 ----a-w- c:\windows\system32\drivers\partmgr.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 17792 ----a-w- c:\windows\system32\drivers\ptilink.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 63232 ----a-w- c:\windows\system32\drivers\nwlnknb.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 55936 ----a-w- c:\windows\system32\drivers\nwlnkspx.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 32512 ----a-w- c:\windows\system32\drivers\nwlnkfwd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12416 ----a-w- c:\windows\system32\drivers\nwlnkflt.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 574976 ----a-w- c:\windows\system32\drivers\ntfs.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 30848 ----a-w- c:\windows\system32\drivers\npfs.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 2944 ----a-w- c:\windows\system32\drivers\null.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 1897408 ----a-w- c:\windows\system32\drivers\nv4_mini.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12032 ----a-w- c:\windows\system32\drivers\nikedrv.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 12672 ----a-w- c:\windows\system32\drivers\mutohpen.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 14592 ----a-w- c:\windows\system32\drivers\ndisuio.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 10880 ----a-w- c:\windows\system32\drivers\ndisip.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 10112 ----a-w- c:\windows\system32\drivers\ndistapi.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 7552 ----a-w- c:\windows\system32\drivers\mskssrv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 5504 ----a-w- c:\windows\system32\drivers\mstee.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 5376 ----a-w- c:\windows\system32\drivers\mspclock.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4992 ----a-w- c:\windows\system32\drivers\mspqm.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 19072 ----a-w- c:\windows\system32\drivers\msfs.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 15488 ----a-w- c:\windows\system32\drivers\mssmbios.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 11868 ----a-w- c:\windows\system32\drivers\mdmxsdk.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 7680 ----a-w- c:\windows\system32\drivers\mcd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 4224 ----a-w- c:\windows\system32\drivers\mnmdd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 30080 ----a-w- c:\windows\system32\drivers\modem.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 23040 ----a-w- c:\windows\system32\drivers\mouclass.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 2687512 ----a-w- c:\windows\system32\drivers\LV302V32.SYS.bak
2014-01-02 11:02 . 2013-12-30 09:51 265496 ----a-w- c:\windows\system32\drivers\lvrs.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 25752 ----a-w- c:\windows\system32\drivers\LVPr2Mon.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 22856 ----a-w- c:\windows\system32\drivers\mbam.sys.bak
2014-01-02 11:02 . 2014-01-02 11:02 46592 ----a-w- c:\windows\system32\drivers\irbus.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 92288 ----a-w- c:\windows\system32\drivers\ksecdd.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 14592 ----a-w- c:\windows\system32\drivers\kbdhid.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 13976 ----a-w- c:\windows\system32\drivers\lv302af.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 40192 ----a-w- c:\windows\system32\drivers\intelppm.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 36608 ----a-w- c:\windows\system32\drivers\ip6fw.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 32896 ----a-w- c:\windows\system32\drivers\ipfltdrv.sys.bak
2014-01-02 11:02 . 2013-12-30 09:51 24576 ----a-w- c:\windows\system32\drivers\kbdclass.sys.bak
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-01-06 09:49 259464 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [2006-11-17 577536]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-09-23 926896]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-01-06 3764024]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKLM\~\startupfolder\C:^Documents and Settings^Admin^Nabídka Start^Programy^Po spuštění^Logitech . Registrace produktu.lnk]
path=c:\documents and settings\Admin\Nabídka Start\Programy\Po spuštění\Logitech . Registrace produktu.lnk
backup=c:\windows\pss\Logitech . Registrace produktu.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
2013-09-25 19:53 138096 ----atw- c:\documents and settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Vid]
2009-07-16 13:35 5458704 ----a-w- c:\program files\Logitech\Logitech Vid\Vid.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechQuickCamRibbon]
2009-10-14 11:36 2793304 ----a-w- c:\program files\Logitech\Logitech WebCam Software\LWS.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Messenger (Yahoo!)]
2012-05-25 03:25 6595928 ----a-w- c:\progra~1\Yahoo!\Messenger\YahooMessenger.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2013-06-21 07:58 19875432 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wuauserv"=2 (0x2)
"wscsvc"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Documents and Settings\\Admin\\Local Settings\\Data aplikací\\Facebook\\Video\\Skype\\FacebookVideoCalling.exe"=
"c:\\Program Files\\Logitech\\Logitech Vid\\Vid.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
.
R0 aswRvrt;avast! Revert;c:\windows\system32\drivers\aswRvrt.sys [3.1.2014 22:00 49944]
R0 aswVmm;avast! VM Monitor;c:\windows\system32\drivers\aswVmm.sys [3.1.2014 22:00 180248]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [3.1.2014 22:00 775952]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [3.1.2014 22:00 410528]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [3.1.2014 22:00 67824]
R2 Skype C2C Service;Skype C2C Service;c:\documents and settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [9.10.2013 9:58 3275136]
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-01-16 11:05 1211672 ----a-w- c:\program files\Google\Chrome\Application\32.0.1700.76\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-01-18 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-21 17:39]
.
2014-01-18 c:\windows\Tasks\avast! Emergency Update.job
- c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2014-01-03 09:48]
.
2014-01-18 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-01-03 00:50]
.
2014-01-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-01-03 00:50]
.
2014-01-18 c:\windows\Tasks\User_Feed_Synchronization-{ADF9124F-21E1-4CEA-BB56-4FC27127AFC2}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 03:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://vn.yahoo.com/?fr=mkg029
uSearchURL,(Default) = hxxp://vn.rd.yahoo.com/customize/ycomp/ ... .yahoo.com
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\documents and settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\emlv4rnr.default\
FF - prefs.js: browser.startup.homepage - google.cz
FF - ExtSQL: 2013-12-23 19:13; {635abd67-4fe9-1b23-4f01-e679fa7484c1}; c:\documents and settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\emlv4rnr.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
FF - ExtSQL: 2014-01-03 21:59; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-01-18 22:08
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrueSight]
"ImagePath"="\??\"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(2636)
c:\windows\TEMP\logishrd\LVPrcInj01.dll
c:\windows\system32\webcheck.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
c:\program files\Yahoo!\SoftwareUpdate\YahooAUService.exe
c:\windows\system32\WgaTray.exe
c:\windows\SOUNDMAN.EXE
.
**************************************************************************
.
Celkový čas: 2014-01-18 22:11:12 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-01-18 21:11
ComboFix2.txt 2014-01-03 23:15
.
Před spuštěním: 5 951 967 232
Po spuštění: 6 004 944 896
.
- - End Of File - - A29863944EEE4282EE908ECE633FB519
413FC2A0C716421B3158746D63736515

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu PC

Příspěvekod memphisto » 18 led 2014 22:15

Máš málo místa na systémovém disku. Taky to asi nebude nejsilnější stroj, co?

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

vyčisti systém CCleanerem

Stáhni si OTC

na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.

+ Nový log z HJT

Jak se chová PC?
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 97 hostů